Why is your password still password?

Passwords

One of the regular surveys into our password habits has revealed that they're still mostly terrible, with plenty of people using the easiest, most obvious, guessable options to protect their precious online lives, and two-factor authentication reserved for the hardcore and the paranoid.

It seems people are happy to use the same password across multiple sites and have "123456" protecting their main email account (and therefore their access to their entire data universe), despite regular warnings about how this isn't a great idea as if one thing gets hacked everything else falls with it.

But how can you encourage people to be more interested in using complex passwords and authentication methods, when there's no immediate downside to having password for a password?

It's kind of a boring thing, but, like wearing a seatbelt or replacing the battery in your fire alarm, one that can make things much better for you in the long run should something bad happen.

And not 2820 either

As people clearly can't be trusted, perhaps there should be a two-tier internet, like the filtered versions arriving in the UK thanks to the ISPs and their adult content blockers.

If your password is 123456 or "password," you get a special version of the internet, one that's filtered, and presented entirely in Comic Sans, so you can't do any damage to yourself or others.

Banking sites are blocked, online shopping accounts require an adult signed in with a proper password to vouch for you, plus email is limited to read only as you're clearly a bit too stupid to be trusted to converse with grown-ups.

And if people complain about that, it must come down to the service providers to force their users to comply to proper password rules.

My internet bank requires me to turn up at a branch with a urine sample and a letter from my dad it's so bloody hard to sign in to it these days, but Gmail's happy for me to use the same password I've used for everything since 1996.

Who's wrong there? I'm less likely to do any internet banking because it's such a chore to use the special codes, memorable words, card readers and devices they need to verify I'm me and not a Russian bot, whereas Gmail's always open because it stays logged in and is, therefore, my friend.

If Gmail forced everyone to use two-factor authentication, people would stop using Gmail because of the additional fuss it'd generate and move to a less secure option. That's how lazy we all are.

But then again, aren't we all constantly being hacked in much more intelligent and imaginative ways than people guessing our passwords nowadays? Guessing passwords is a bit 1980s.

When you've got gangs putting fake card readers over the top of ATM slots to steal PIN numbers and keyloggers installing themselves in the background when you visit web sites, bothering about secure passwords feels like fighting a pointless, losing battle.

Someone's going to find out your password and special numbers no matter what they are or how many odd alternate characters and capital letters you're using, so perhaps the only defence and way to stay sane is to stop caring and hope it doesn't happen to you.

That's the same way we manage to not worry about getting crushed by falling masonry when going outside. Imagine it won't happen to you, and if it does, don't worry, as someone will probably help pick up the bits.

Latest in Computing Security
ensure data security for your business
The complete data protection system for your business
ignal messaging application President Meredith Whittaker poses for a photograph before an interview at the Europe's largest tech conference, the Web Summit, in Lisbon on November 4, 2022.
"We will not walk back" – Signal would rather leave the UK and Sweden than remove encryption protections
Man uses a laptop in a hotel room
4 ways to avoid misinformation on social media and retain control of your newsfeed
Apple
"We will never build a backdoor" – Apple kills its iCloud's end-to-end encryption feature in the UK
DeepSeek
DeepSeek accused of sharing users' data with TikTok's ByteDance in another blow around privacy concerns
This photograph shows wordmark of Siri, a digital assistant developed by Apple Inc., displayed on a smartphone
Did Siri break the law? Apple's latest privacy complaint in France doesn't bode well
Latest in News
Q Acoustics Q SUB80, QSUB100 and QSUB120 subwoofers
Q Acoustics wants to bring the bass to your post-Oscars movie catch-up
Hospital
Major Oracle outage hits US Federal health record systems
iPad Pro 13-inch 2024 on a table
The OLED iPad Pro is reportedly less popular than expected – and that could mean these changes to Apple's OLED iPad plans
Sam Porter cradles a baby
Death Stranding 2: On the Beach trailer confirms June release date and an even more harrowing post-apocalyptic world
The Ray-Ban Meta Coperni smart glasses
The new Ray-Ban Meta smart glasses design is an expensive disappointment
AOC Agon Pro AG276FK gaming monitor tilted slightly to the side, showing the Windows desktop screen
Windows 11 users get ready for more ‘recommendations’ from Microsoft – but I’m relieved to say these suggestions might actually be useful