Friday, December 1, 2023
  • Opinion
  • Global
  • Contact
Business News – The Latest News on the Economy & Financial
  • News
  • Market
  • Finance
  • Innovation
  • Financial Advice
  • Tech
  • Cryptocurrency
  • Money
  • Sports
No Result
View All Result
Get Started
Business News – The Latest News on the Economy & Financial
  • News
  • Market
  • Finance
  • Innovation
  • Financial Advice
  • Tech
  • Cryptocurrency
  • Money
  • Sports
No Result
View All Result
Business News – The Latest News on the Economy & Financial
No Result
View All Result

Top 20 Administrator Passwords That Will Astonish You

Johnny by Johnny
October 27, 2023
in News
0 0
A A
0
Top 20 Administrator Passwords That Will Astonish You 653B0Ebe1Cb4C
Share on FacebookShare on Twitter

VentureBeat Presents: AI Unleashed – An Exclusive Executive Program for Enterprise Data Leaders. Network and educate yourself from industry peers, find out more

Thank you for reading this post, don't forget to subscribe!

“Select a combination of words, numbers, special characters, and cases.” “Avoid reusing passwords for multiple accounts.” “Choose a password you haven’t used previously.”

These types of messages are familiar to everyone, and enterprises continually reiterate them.

No one enjoys passwords (they can feel like a daily chore), and people can be negligent – this includes administrators.

In fact, according to recent research conducted by cybersecurity company Outpost24, system administrators commonly use easily guessable passwords such as “admin” and other similarly easy-to-guess options. Default passwords are also frequently used during initial setup and login.

events

AI exposed

An exclusive invitation-only evening of insights and networking, designed for senior enterprise executives overseeing data stacks and strategies.

find out more

“With our personal and professional lives becoming increasingly online, we must change how we approach passwords,” stated Darren James, senior product manager at Outpost24, in an interview with VentureBeat. “Using the same short password that is easy to guess across multiple systems may make it easier to remember, but it also significantly increases vulnerability to attacks.”

Top 20 Administrator Passwords According to Outpost24 Research

Outpost24’s ongoing monitoring and intelligence revealed approximately 1.8 million passwords. “admin” appeared over 40,000 times, followed by “12345,” “12345678,” “1234,” and “password.”

  1. administrator
  2. 123456
  3. 12345678
  4. 1234
  5. Password
  6. 123
  7. 12345
  8. admin123
  9. 123456789
  10. Administration
  11. demo
  12. Root
  13. 123123
  14. admin@123
  15. 123456aA@
  16. 01031974
  17. admin@123
  18. 111111
  19. admin1234
  20. admin1

This corresponds with cyberattack research; for instance, the Verizon Data Breach Investigations Report discovered that one of the primary methods attackers gain access to organizations is through credential theft (alongside phishing and vulnerability exploitation).

In addition, nearly three-quarters (74%) of breaches are caused by human error, such as the use of stolen credentials, privilege abuse, and social engineering.

Attackers are increasingly utilizing password-stealing malware (stealers) that specialize in stealing passwords. Once installed (e.g. through clicking on a malicious attachment), these malware programs operate in the background and collect information, including logins for web browsers, FTP clients, mail clients, and wallet files.

Another way threat actors steal passwords is through brute-force attacks, trying various combinations of passwords or passphrases with the hope of eventually guessing the correct one, based on login intelligence obtained by Outpost24. This is often done in conjunction with credential stuffing, where a password obtained from one account is tried on other accounts.

Administrators are humans too

So, even though most of us are aware of the risks, why are we still negligent when it comes to passwords?

According to James, it’s not solely the fault of the users; organizations and services must establish appropriate policies and tools that support good password practices.

Many systems still rely on old, short passwords with seven to 12 characters, which were in use before the Internet became ubiquitous. Organizations often fail to provide users with guidance on how to change passwords, resulting in predictable patterns such as simply changing a number at the end (let’s admit, we are all guilty of this).

But shouldn’t administrators know better by now?

“It’s crucial to eliminate weak administrator passwords, but administrators are human too, and they take shortcuts like the rest of us,” James explained.

Practicing Good Security Hygiene

Default passwords should be automatically changed the first time they are used – this should be a company requirement, James suggested.

Organizations must also put the right policies in place and apply them to the appropriate individuals. Administrators should have two accounts: one for non-administrative tasks (e.g., managing email, conducting research) and another for their administrator role, each with separate passwords.

James added, “They should be required to use long, strong, and unbreakable passwords for these accounts – and unfortunately for administrators, I would still recommend changing them regularly.”

Whenever possible, administrator accounts should have multi-factor authentication (MFA) enabled. Moreover, if administrators struggle with managing multiple passwords – without resorting to writing them down or saving them in insecure documents or emails, which pose additional security risks – they should consider using a password manager. Required

These management systems should always have a strong passphrase, which is longer than a password and more difficult for hackers to guess. For example, James suggested using three random words, each with 15 letters, that hold personal significance.

Complexity is unnecessary, and constant scanning for violations can be done, James claimed, concluding, “You don’t even need to change it.”

Passwords Aren’t Disappearing, So Remain Vigilant

It’s not uncommon for many of us to have tens or even hundreds of passwords today, and James acknowledged that “creating unique passwords for every system we log into is just not something most of us can do.”

In addition to avoiding obvious mistakes like using default passwords, James recommended using anti-malware tools and regularly scanning login credentials to ensure they haven’t been compromised. Scanning can also detect if those logins are used across multiple accounts. Disabling browser password saving and auto-fill settings is another important practice.

James also stressed the importance of being cautious of domain typosquatting (when hackers register domains with intentionally misspelled versions of common websites) and verifying that you’re redirected to the correct sites after clicking on ads.

Passwordless and passkeys are emerging methods to enhance cybersecurity, but James noted that they are still far from being fully viable. Therefore, until an authentication utopia arrives (which may take a while), organizations need to do their best. Emphasis should be placed on implementing good practices and using appropriate tools for managing and securing passwords.

For those who have diligently created strong, long, and complex passwords and are concerned about Outpost24’s findings, James provided encouragement, saying, “Keep up the good work!”

Additionally, he advised spreading awareness among colleagues, stating, “Preach to your nearby coworkers.”

Ultimately, James affirmed that “passwords, whether we like them or not, will continue to be a critical part of the authentication process for the foreseeable future.” He emphasized the extreme importance of using them correctly, as one compromised credential could expose an entire infrastructure or personal life.

VentureBeat’s mission is to serve as a digital town square for technology decision makers seeking knowledge about transformative enterprise technology and transactions. Find our briefing.

Source: venturebeat.com

You might also like

Google is set to begin removing old accounts from today. Here are steps to safeguard your account

Rates surge: Markets are reducing rates

Johnny

Johnny

Related Stories

Google is set to begin removing old accounts from today. Here are steps to safeguard your account

by Johnny
2023/12/01
0

Starting on December 1, Google will initiate the elimination of inactive Google Accounts, which encompasses account content such as pictures,...

Rates Surge: Markets Are Reducing Rates

Rates surge: Markets are reducing rates

by Johnny
2023/12/01
0

Despite yields have successfully increased to some degree, curve steepening (dis-inversion) persists. According to the Fed's term premium model, the...

It Stands As One Of The Superior High Growth Stocks In The Ftse 100. And At The Moment, It’S Inexpensively Priced

It stands as one of the superior high growth stocks in the FTSE 100. And at the moment, it’s inexpensively priced

by Johnny
2023/12/01
0

Image Source: Getty Images From a historical viewpoint, Ashtead (LSE:AHT) undeniably represents one of the foremost growth shares in the...

Elon Musk: Controversial Statement Deemed ‘Absurd’, I’M Essentially A Thinker

Elon Musk: Controversial statement deemed ‘absurd’, I’m essentially a thinker

by Johnny
2023/12/01
0

During a candid conversation on Thursday, Elon Musk addressed a post he had shared, stating it was the "silliest thing"...

Popular Story

  • Aa1Hsiwz

    Microsoft Introduces Copilot: Artificial Intelligence for Windows, Word, Edge … Everything

    19 shares
    Share 7 Tweet 5
  • Kevin McCarthy Experiences a Monumental Embarrassment

    16 shares
    Share 6 Tweet 4
  • Bernard Arnault, the world’s second wealthiest person, is currently under investigation for potential money laundering.

    15 shares
    Share 6 Tweet 4
  • What is the evidence indicating about the origin of the Gaza hospital explosion?

    15 shares
    Share 6 Tweet 4
  • How to Utilize the Patient Journey for Developing Market Strategy

    15 shares
    Share 6 Tweet 4
Business News – The Latest News on the Economy & Financial

Business News – The Latest News on the Economy & Financial

  • Privacy Policy
  • Disclaimer
  • DMCA
  • Contact Us

© 2023 icobbe.com - Business News – The Latest News on the Economy & Financial icobbe.com.

No Result
View All Result
  • News
  • Market
  • Finance
  • Innovation
  • Financial Advice
  • Tech
  • Cryptocurrency
  • Money
  • Sports

© 2023 icobbe.com - Business News – The Latest News on the Economy & Financial icobbe.com.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.