Monday, April 28, 2025
HomeCyber Security NewsMost Hacked Passwords - Top 100,000 Common Passwords that Already Known to...

Most Hacked Passwords – Top 100,000 Common Passwords that Already Known to Hackers

Published on

SIEM as a Service

Follow Us on Google News

Password plays a vital role in securing your account, a common password is easy to remember, but it will be easier for an attacker to guess the password. An analysis of most Hacked Passwords showing still people is using weak passwords.

Based on the UK’s National Cyber Security Centre breach analysis, the password ‘123456’ has been found 23 million times in the breaches. Next to that 123456789 found 7 million times.

Passwords like ashley, michael, qwerty and 1111111 are the most commonly used passwords by users for multiple accounts. The survey shows more than 70% always use PINs and passwords for smartphones and tablets.

- Advertisement - Google News

If you have a weak password then it is a cake walk for hackers, they can gain access to your account easily by using brute force techniques.

The most terrible passwords used are “123456” and “password”, they continue to hold the #1 and #2 spots, respectively.

A strong password should have at least six characters that include a combination of upper and lowercase letters, symbols and numbers.

NCSC released the most hacked passwords list, in collaboration with Troy Hunt’s Have I Been Pwned data set. Here is the list of top 100,000 passwords that already known by hackers.

If you find your password in the list it is recommended to change the passwords immediately. The list obtained from “global breaches that are already in the public domain having been sold or shared by hackers,” reads NCSC’s blog post.

“Using hard-to-guess passwords is a strong first step and we recommend combining three random but memorable words. Be creative and use words memorable to you, so people can’t guess your password,” Dr. Ian Levy, NCSC Technical Director, said.

“Given the growing global threat from cyber attacks, these findings underline the importance of using strong passwords at home and at work,” David Lidington, Chancellor of the Duchy of Lancaster and Minister for the Cabinet Office, said.

Tips to Stay Safe

  • Use a complex password, enforce strong password policy.
  • you can use an online generator
  • Check the password regularly, Use two-factor authentication(2FA) for vital sites like managing an account and Emails, make sure all the passwords are unique.
  • Change the Manufactures default Password that gadgets are issued before they are conveyed to the IT Department.
  • Configure using password Manager only for your less important websites and accounts.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

10 Best Free Password Manager to Secure Your Password For 2019

69 Percent of Employees Share Passwords With Their colleagues in Workplace

List of Top 25 Worst Passwords of 2018 Based On 5 Million Leaked Passwords

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

SAP NetWeaver 0-Day Flaw Actively Exploited to Deploy Webshells

SAP disclosed a critical zero-day vulnerability, identified as CVE-2025-31324, in its NetWeaver Visual Composer component. This...

Windows 11 25H2 Expected to Launch with Minor Changes

Microsoft is quietly preparing the next update to its flagship operating system, Windows 11 25H2,...

China Claims U.S. Cyberattack Targeted Leading Encryption Company

China has accused U.S. intelligence agencies of carrying out a sophisticated cyberattack against one...

Critical FastCGI Library Flaw Exposes Embedded Devices to Code Execution

A severe vulnerability (CVE-2025-23016) in the FastCGI library-a core component of lightweight web server...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

SAP NetWeaver 0-Day Flaw Actively Exploited to Deploy Webshells

SAP disclosed a critical zero-day vulnerability, identified as CVE-2025-31324, in its NetWeaver Visual Composer component. This...

Windows 11 25H2 Expected to Launch with Minor Changes

Microsoft is quietly preparing the next update to its flagship operating system, Windows 11 25H2,...

China Claims U.S. Cyberattack Targeted Leading Encryption Company

China has accused U.S. intelligence agencies of carrying out a sophisticated cyberattack against one...