'12345' the most popular phished Hotmail password
The most common password for victims of the massive Hotmail hack was '12345' suggesting security wasn't exactly at the forefront of their minds.
The phishing attack that exposed the details of 10,000 Hotmail users has revealed that 12345 was the most popular password of those caught out, according to a security researcher.
That's alarming news given the glut of information and warnings that pepper the internet, especially given the fact that the second most popular password was 123456789.
The information was revealed by security research Bogdan Calin on his blog. Calin reviewed the list of 10,000 Hotmail accounts posted on PasteBin by hackers and discovered that of the 9,843 valid passwords, 82 of them used one of these two numbers.
Also popular, and equally weak, were the passwords 12345678, 1234567 and 111111 - which all featured in the top ten.
The rest of the top ten was filled out with names such as alejandra, alberto, and alejandro, leading Calin to suspect that the phishing kit was targeting Latinos.
Another interesting fact to be pulled from his research was the longest password, which came in at a staggering 30 characters and was "lafaroleratropezoooooooooooooo". The shortest password, on the other hand, was only one character long.
In general, Calin found that the majority of the passwords were between six and nine characters long, with the average password eight characters in length.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Hotmail users weren't the only ones caught out by the phishers, with GMail, Yahoo and AOL also reporting that their users have been targeted.
-
What does modern security success look like for financial services?Sponsored As financial institutions grapple with evolving cyber threats, intensifying regulations, and the limitations of ageing IT infrastructure, the need for a resilient and forward-thinking security strategy has never been greater
-
Yes, legal AI. But what can you actually do with it? Let’s take a look…Sponsored Legal AI is a knowledge multiplier that can accelerate research, sharpen insights, and organize information, provided legal teams have confidence in its transparent and auditable application
-
Microsoft fixes Hotmail security flawNews Software giant said it's "working hard" to protect email accounts from password resetting hackers.
-
Microsoft banning weak Hotmail passwordsNews Hotmail changes mean you won't be able to express your love of cats in passwords anymore.
-
Week in review: E-books and DNA readersNews Hotmail is phished, IBM wants to read your DNA, Amazon announces the Kindle for the UK and it's revealed that the internet was created in Harlow.
-
Microsoft confirms Hotmail phishing attackNews Security experts warn Hotmail users to change their passwords immediately.
-
Thousands of Hotmail passwords leaked onlineNews Microsoft is "actively investigating" the possible leak of more than 10,000 account passwords.
-
Should Jack Straw use Hotmail for gov business?News Security firm criticises the Justice Secretary for using a Hotmail email account to talk to his constituents and government contacts.