unilad homepage
unilad homepage
    • News
      • UK News
      • US News
      • World News
      • Crime
      • Health
      • Money
      • Sport
      • Travel
    • Music
    • Technology
    • Film and TV
      • News
      • DC Comics
      • Disney
      • Marvel
      • Netflix
    • Celebrity
    • Politics
    • Advertise
    • Terms
    • Privacy & Cookies
    • LADbible Group
    • LADbible
    • SPORTbible
    • GAMINGbible
    • Tyla
    • UNILAD Tech
    • FOODbible
    • License Our Content
    • About Us & Contact
    • Jobs
    • Latest
    • Archive
    • Topics A-Z
    • Authors
    Facebook
    Instagram
    X
    Threads
    TikTok
    YouTube
    Submit Your Content
    Why your complicated password might be doing more harm than good
    Home>Technology>News
    Published 15:58 1 Jan 2025 GMT

    Why your complicated password might be doing more harm than good

    It's about length, not complexity

    Liv Bridge

    Liv Bridge

    google discoverFollow us on Google Discover
    Featured Image Credit: Getty Images/Crispin la valiente/Getty Images/SEAN GLADWELL

    Topics: Technology, Business, US News, Social Media, Money, Google

    Liv Bridge
    Liv Bridge

    Liv Bridge is a digital journalist who joined the UNILAD team in 2024 after almost three years reporting local news for a Newsquest UK paper, The Oldham Times. She's passionate about health, housing, food and music, especially Oasis...

    X

    @livbridge

    Advert

    Advert

    Advert

    Tech pros have revealed why having a complicated password for your devices might not be the best approach and actually, could be doing more harm than good.

    It's highly likely you're having to grapple with a seemingly never-ending list of passwords, whether it's online banking, to access various emails, or for the many different social media accounts we have. And you probably have dozens more for the devices you use for work, too.

    It's a given that keeping our personal information private is an utmost priority, and companies labor the point to employees out of fear of hackers comprising company data and private information.

    Passwords are vital at protecting our accounts from hackers and malware (Getty Images)
    Passwords are vital at protecting our accounts from hackers and malware (Getty Images)

    Advert

    The theory is that complex passwords are harder to guess or to crack through cyber attacks.

    But memorizing all these passwords, which often 'require' a myriad of numbers, letters, and symbols to reach a lengthy character count, can quickly become a burden - and you might be inclined to write a physical list of them all in case you forget.

    But according to the US National Institute of Standards and Technology (NIST), which develops guidelines to help organizations safeguard their tech, complex passwords are no longer recommended.

    As reported by Forbes, NIST recently published new guidance in keeping government information systems secure and made some notable changes to the long-standing password best practice that has been drilled into us.

    If you've ever used Google Chrome's password generator, you'll have noticed how it automates a password crammed with lower case and capitalized letters, numbers and random symbols that you're unlikely to ever remember without jotting down or saving them in Google's Password Manager.

    Writing down passwords or storing them in your phone is a bad idea (Getty Images)
    Writing down passwords or storing them in your phone is a bad idea (Getty Images)

    And here's here where NIST warns a complex password runs the risk of compromising your data and actually weakening your security as a hacker could potentially find your password notebook or, by simply using your device, gain access to all your passwords at once.

    NIST advises the length of passwords is an easier and therefore safer way to protect your account compared to complexity.

    As the guidance notes, online services require users to create passwords with a mixture of different characters, but 'analyses of breached password databases reveal that the benefit of such rules is less significant than initially thought'.

    What this means is that you're better off using a long string of words that you will be able to remember in a password than a random jumble - and each password should contain a different string of words.

    By using a short sentence or sequence of words, you're less likely to store the passwords in a note on your phone or reuse the password again for another account, which jeopardizes all your accounts at once.

    That, and it'd close to mathematically impossible to be able to crack a password of 64-characters made up of real words with the odd capitalized letter and symbols.

    Further fueling our risky password patterns is the requirement that many organizations have enforced to change our company password every 60 to 90 days, which NIST is also no longer recommending.

    Choose your content:

    2 days ago
    3 days ago
    4 days ago
    • Pier Marco Tacca/Getty Images
      2 days ago

      AI expert issues chilling warnings about deepfakes after Italian Prime Minister shares AI lingerie photo

      Even laws around deepfakes won't fix the problem, the expert claims

      Technology
    • NBC Bay Area
      2 days ago

      Doctor had college students take 9-week digital detox and revealed 'scary' impact on the brain

      'After I removed this negative presence, I realized all the positive aspects of my life,' one student said

      Technology
    • (Photo by Emanuele Cremaschi/Getty Images)
      3 days ago

      Playstation users who bought games within four-year period eligible for Sony $7.85 million settlement

      Sony has been accused of monopolizing the market through its PlayStation Store

      Technology
    • Dhiraj Singh/Bloomberg via Getty Images
      4 days ago

      iPhone users can check if they’re eligible for Apple's $250m payout over AI accusations

      The payout applies to people who bought certain iPhones between June 2024 and March 2025

      Technology
    • Man who spent 27 years in prison for crime he didn't commit reveals the biggest change in society
    • OpenAI CEO slammed for comments about jobs that will eventually be replaced by Artificial Intelligence
    • Major car manufacturer recalls more than 400,000 of their most popular vehicles over serious fault
    • Major change could soon be coming to US credit cards as Trump vows to not let Americans be 'ripped off'