Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes indeed. For example they add the current year and month and keep the same "base password" which is unsafe.


"Password2017" is a typical "secure" password. Capital and small letters, and number - longer than 8 characters. Passes most "checks" for passwords...


"Password2017!" is even better. It's got a special character!


My favorite "pattern for stupid passphrase requirements" is "1qaz@WSX" - then just move a row to the right with every password change. :)


Funny how most people go for ! as the default special character :)


It adds to the excitement of logging into an application. Instead of "login", you get to "login!".


I think it's a natural outgrowth of how so many people chose "1" when they were forced to add a number to their passwords.




Consider applying for YC's Winter 2027 batch! Applications are open till November 2.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: