Slog

News & Arts

The Stranger Suggests

Critics' Best Bets
Music Arts & Food


Line Out

Music & the City
at Night

Thursday, July 12, 2012

Yahoo Confirms Leak of 400,000 Passwords

Posted by on Thu, Jul 12, 2012 at 2:16 PM

Shocking mostly because people apparently still use Yahoo, but awesome because now we can parse these awesome statistics on how terrible people's passwords are.

The top 10 passwords in this collection?

123456 = 1666 (0.38%)
password = 780 (0.18%)
welcome = 436 (0.1%)
ninja = 333 (0.08%)
abc123 = 250 (0.06%)
123456789 = 222 (0.05%)
12345678 = 208 (0.05%)
sunshine = 205 (0.05%)
princess = 202 (0.05%)
qwerty = 172 (0.04%)

Change your password.

 

Comments (20) RSS

Oldest First Unregistered On Registered On Add a comment
Catalina Vel-DuRay 1
Hey! I have a yahoo email address. What's wrong with that? At least it's not AOL.
Posted by Catalina Vel-DuRay http://www.danlangdon.com on July 12, 2012 at 2:43 PM
Fnarf 2
I have a yahoo account solely because it is required to have one in order to have a Flickr account, which nonetheless is a different account and password -- but you have to go through the Yahoo login first. Since I have to do this about once every two years, I forget my Yahoo password every single time. Yahoo sucks donkey balls.
Posted by Fnarf http://www.facebook.com/fnarf on July 12, 2012 at 2:49 PM
Simone 3
@2, Flickr user here too. I also don't remember my yahoo password and I didn't write it down which I normally do.
Posted by Simone on July 12, 2012 at 2:51 PM
gloomy gus 4
Long have I waited for an opportunity to announce I have a robot assign big long passwords for all these different sites now. It remembers them all for me - if I forget the master password for my robot I am hosed.
Posted by gloomy gus on July 12, 2012 at 2:59 PM
Zebes 5
Ha ha ha! It's 20(number)! You still use (service)?
Posted by Zebes http://www.badrap.org/rescue/index.html on July 12, 2012 at 3:03 PM
6
"Ninja"?
Posted by Patrick McGrath on July 12, 2012 at 3:05 PM
7
The thing is, nobody's password ever gets cracked by repeated guessing. Sites just shut you down after enough guesses to get anywhere close. Passwords get taken in one of three ways - they either trick you into telling them your password by phishing, they install a key-logger on your computer, or they hack the site that has your password like somebody did to Yahoo. Having a complicated-to-guess password like had8458?!?usdig won't do anything at all to protect you.
Posted by c'mon girlfriend on July 12, 2012 at 3:05 PM
icouldliveinhope 8
Also still have Yahoo for Flickr, with the same password (until about 5 minutes from now) that I used to create one in like... 1998. Yep, changing.
Posted by icouldliveinhope on July 12, 2012 at 3:19 PM
GlamB0t 9
1Password, y'all.
Posted by GlamB0t on July 12, 2012 at 3:37 PM
malcolmxy 10
It warms my heart to see ninja so high up on the list.

OOPS.

My password is NOT ninja! Nope. Definitely not that.

Glad we got that cleared up (phew...close one.)
Posted by malcolmxy on July 12, 2012 at 3:40 PM
Urgutha Forka 11
I have email accounts with all the major, generic services (hotmail, yahoo, gmail, etc.).

None are better or worse than others. They all get some spam, none more or less than others. They all function almost identically to each other.

People who say "You still use yahoo/hotmail/whatever?! Dude that's so old! Don't you know all the cool kids use gmail now?!" are only fooling themselves.
Posted by Urgutha Forka on July 12, 2012 at 3:41 PM
emma's bee 12
Yes, @7 & 11. This snooty disdain for whatever webmail system is all very amusing.
Posted by emma's bee on July 12, 2012 at 3:50 PM
13
@7,

Perhaps, but one thing that does help is not using the same password for every account.
Posted by keshmeshi on July 12, 2012 at 4:21 PM
Will in Seattle 14
actually, it's 450,000 accounts, but a lot were obvious dupes used by the same person.

D3474 continues to be a secure password ...
Posted by Will in Seattle http://www.facebook.com/WillSeattle on July 12, 2012 at 4:29 PM
15
Don't all the cool kids have their own domains?
Posted by WestSeven on July 12, 2012 at 5:17 PM
16
The real question is what percentage of the accounts with a password like 123456 were used once and thrown away.
Posted by Ben on July 12, 2012 at 5:17 PM
6 17
When gmail stops sucking so bad, and allows me to multi-task more then I'll switch. So, I'll probably have a yahoo account until google absorbs it.
Posted by 6 on July 12, 2012 at 6:05 PM
Anthony Hecht 18
@7 - You're making a big assumption that sites are implementing something that would shut down repeated guesses. That's not true. Most sites will happily let you guess until the cows come home, but more importantly, will let a robot guess until the robot cows come home.

It's absolutely more secure to have a hard to guess password. But it's more secure to use different passwords on different sites (that don't follow a guessable pattern). Your password is only as secure as the crappiest site you've used it on.

And for everyone else: YAHOO?!?!? HAH HA HAH AHAHA/
Posted by Anthony Hecht on July 12, 2012 at 7:18 PM
19
I'm pretty sure most of the people with the terrible passwords are people who don't care if someone guesses their password.

I'd be interested to hear the names on the attached email addresses. How many "Homer Simpson"s are there?
Posted by Hanoumatoi on July 13, 2012 at 12:35 AM
nightscrawl 20
19, I thought that too. I have two e-mail accounts. One is for personal/legitimate stuff, the other is for all the forums, websites, and all of that other junk I have to register for (including this one).
Posted by nightscrawl on July 13, 2012 at 4:30 AM

Add a comment

Advertisement
 

Want great deals and a chance to win tickets to the best shows in Seattle? Join The Stranger Presents email list!


All contents © Index Newspapers, LLC
1535 11th Ave (Third Floor), Seattle, WA 98122
Contact Info | Privacy Policy | Terms of Use | Takedown Policy