It is the most widely used tool to control access to all types of services that store personal information (email, online banking, online stores, social networks, etc.). A good password is one that cannot be guessed. Therefore, it must be complex, unique and secret.
CThe longer the better, but it should never be less than 8 characters long, because it could be cracked in a matter of minutes using a brute force attack. In general, 10 characters can be considered secure enough, as long as it contains a mix of uppercase, lowercase, numbers, and symbols. It also needs to be updated regularly, as we will never be sure that it has not been leaked. You can check the time estimates required for a successful attack of this nature in this table. You can also check how long it will take to break your password.
Check the most common passwords list
Several attacks of very diverse nature can be used to attempt to steal your password:
It is common for stolen credentials to be sold on the dark web, or even posted on the internet. For example, RockYou2021 is a published archive that collects 8.4 billion filtered passwords.
There are tools to check if credentials have been leaked. Some examples are:
However, as these services are not infallible, you need to change your passwords regularly.
Passwords must be changed immediately to regain full control of your account and associated information.
Last update: 27.01.2026