
Submission + - A brief Sony password analysis (troyhunt.com)
troyhunt writes: "So the Sony saga continues. As if the whole thing about 77 million breached PlayStation Network accounts wasn’t bad enough, numerous other security breaches in other Sony services have followed in the ensuing weeks, most recently with SonyPictures.com where a significant portion of the database was publicly disclosed a few days back.
With all this customer data now unfortunately out there for public viewing, I thought it would be interesting to do some analysis on password practices. There are some rather alarming (although not entirely surprising) findings including:
36% of passwords appear in a common password dictionary.
50% of passwords are 7 characters or less.
67% of accounts on both Sony and Gawker use the same password.
82% of passwords are lowercase alphanumeric of 9 characters or less.
99% of passwords don’t contain a single non-alphanumeric character."
With all this customer data now unfortunately out there for public viewing, I thought it would be interesting to do some analysis on password practices. There are some rather alarming (although not entirely surprising) findings including:
36% of passwords appear in a common password dictionary.
50% of passwords are 7 characters or less.
67% of accounts on both Sony and Gawker use the same password.
82% of passwords are lowercase alphanumeric of 9 characters or less.
99% of passwords don’t contain a single non-alphanumeric character."