Audio By Carbonatix
Millions of people are using easy-to-guess passwords on sensitive accounts, suggests a study.
The analysis by the UK's National Cyber Security Centre (NCSC) found 123456 was the most widely-used password on breached accounts.
The study helped to uncover the gaps in cyber-knowledge that could leave people in danger of being exploited.
The NCSC said people should string three random but memorable words together to use as a strong password.
Sensitive data
For its first cyber-survey, the NCSC analysed public databases of breached accounts to see which words, phrases and strings people used.
Top of the list was 123456, appearing in more than 23 million passwords. The second-most popular string, 123456789, was not much harder to crack, while others in the top five included "qwerty", "password" and 1111111.
The most common name to be used in passwords was Ashley, followed by Michael, Daniel, Jessica and Charlie.
When it comes to Premier League football teams in guessable passwords, Liverpool are champions and Chelsea are second. Blink-182 topped the charts of music acts.
People who use well-known words or names for a password put themselves people at risk of being hacked, said Dr Ian Levy, technical director of the NCSC.
"Nobody should protect sensitive data with something that can be guessed, like their first name, local football team or favourite band," he said.
Hard to guess
The NCSC study also quizzed people about their security habits and fears.
It found that 42% expected to lose money to online fraud and only 15% said they felt confident that they knew enough to protect themselves online.
It found that fewer than half of those questioned used a separate, hard-to-guess password for their main email account.
Security expert Troy Hunt, who maintains a database of hacked account data, said picking a good password was the "single biggest control" people had over their online security.
"We typically haven't done a very good job of that either as individuals or as the organisations asking us to register with them," he said.
Letting people know which passwords were widely used should drive users to make better choices, he said.
The survey was published ahead of the NCSC's Cyber UK conference that will be held in Glasgow from 24-25 April.
Latest Stories
-
Trump threatens Canada with 100% tariffs over China trade deal
3 minutes -
Two days of peace talks end as Russia continues Ukraine attacks
18 minutes -
GOC offers an Olympic Scholarship to female athletes.
44 minutes -
Peace Pacts, Political Widows & Other Campaign Strategies
51 minutes -
Boy, 12, dies from injuries after Sydney shark attack
58 minutes -
South Sudan army chief gives soldiers seven days to crush rebellion
1 hour -
Nkrumah Park raked in GH¢10m in 2025: 266,000 tourists visited facility – Executive Director
2 hours -
Ukraine condemns ‘brutal’ Russian strikes ahead of second day of peace talks
3 hours -
Mandela’s prison key, sunglasses and shirt can be sold after daughter wins court battle
3 hours -
GES cautions public against fake recruitment letter circulating on social media
3 hours -
Prof. Gyampo welcomes joint task force and currency stability to support transport sector
3 hours -
Kennedy Agyapong campaign team says peace pact was not received before NPP signing
3 hours -
Roads Minister urges chiefs to monitor road contractors as Mahama pushes infrastructure completion
3 hours -
Police arrest 38-year-old man over suspected narcotics in a GHS vehicle
3 hours -
2,949 killed in 14,743 road crashes in 2025 – NRSA
3 hours
