Changing Passwords: Annoying? Yes. Important? Yes!


We all have been there before. We go to log into our email, our computers, our bank accounts and we get the dreaded ‘your password has expired/needs to be changed’. When you try to update it to one of your usual passwords, it won’t accept it because you have used it in the past! Time to make a new password up—or you just add a capitol letter or another number onto the end of your old one. Annoying, time consuming, and interrupts the flow of the day…but critically important.

Using the same password, simple passwords, or never changing their passwords is by far one of the most dangerous behaviors business owners and their employees have as it relates to their Technology. This habit has to be broken in order to reduce a business’s data security risk and unfortunately, if you use the same password or password pattern on a number of online sites—it is a matter of when, not if, that at least one if not all of your accounts will be breached.

“But why would anyone want into my data? All I have is boring emails between me and my clients talking about houses, business cards, or candles. It isn’t like I have lists of credit cards on my computer.” Or do you? If you click ‘save’ in Internet Explorer, Firefox, or Google Chrome–your passwords are saved in plain text inside of your browser. Does your Amazon account automatically log you in when you visit it? Within minutes, an experienced hacker can buy $1000’s in gift cards on amazon, download all your data and passwords, send out fake-emails to infect or con your clients, and even wipe out your entire system afterwards to erase their footsteps and give them more time to utilize your data before you can figure out what is going on. Your data and online accounts are worth far more than you realize.

Let’s break it down with a few examples of bad password habits.

I use a complex password, full of uppercase, lowercase, numbers, and symbols! No one could ever guess this password! I feel safe using it on multiple websites…everywhere in fact.

Have I been Pwned example of data security risks due to using the same password.

Have I been Pwned example of data security risks due to using the same password.

Good start, however the majority of breached emails and online accounts aren’t due to a guessed password. They are due to a leaked password from another service, malware that recorded your password/credentials on an infected machine, or because you wrote it on a sticky note that is clearly visible to everyone who passes through your office. One password to rule them all with dozens if not hundreds of potential leak points. 

Have I Been Pwned will tell you if your email has been part of any leaks in the past. Often times, these leaked credentials aren’t even accessed or used by malicious individuals until months or even years after the first leak–and we also don’t’ find out about these leaks usually for years later until those who have these lists decide to sell them for pennies on the dollar on the dark web. That is after they weed out the obvious high-value emails, such as those with domain names or for example.

What about malware? There is a specific type of malware called keyloggers. This software records every keystroke and some take regular screenshots of your desktop, all without you knowing. This information is than relayed to a bad-guy data server for archiving, reselling, and eventual attempts to gain access to your data for various purposes.

Finally, the sticky note. This can come in many forms from a physical note under your keyboard, on your monitor, or saving passwords in a spreadsheet on your desktop. Saving a file on your computer filled with passwords called ‘information’ or ‘cookie recipes’ is not going to stop it from being found. Malware/hacking tools can search for email/username/password patterns in files and quickly sniff out such documents no matter how cleverly they are named. Or imagine that you took a picture of your office after you cleaned it to show off on instagram–and didn’t think about the sticky note that was visible with your blurry but readable password?

Frequently used passwords or using a word associated with you.

Why complex passwords are important for data security and your business.

Why complex passwords are important for data security and your business.

This? Stop it. Immediately. QWERTY, Password123, 12345678, passw0rd—No. How about Smith1950? This is your last name and a birth year. No. If your password can be found on any top 1000 password lists or uses a word from the dictionary, it can be brute forced. This means it can be guessed by an individual or by software that tries common combinations–and depending on the location of the login–it can guess thousands of passwords a minute or more. Password123 will be cracked instantly, Fideo25! will be guessed in a few minutes, but !@34jsks892!##@_@? This password will take thousands of years to crack even by the best software.

Sharing passwords or using the same password for multiple users within a business.

No. No. No. Why have a password at all? Having all your employees with the same user and email logins? Same password for your database? This is a recipe for disaster. You trust your employees, none of them would ever go rogue–or login as another user to edit/delete something discriminating, right? Employees can behave in erratic ways if they get let go or feel they have been mistreated. That aside, it only takes one of your employees putting in that username/password into a malicious pop-up that looked like an official windows login popup, to tell a fake IT Support rep over the phone the password, and the worst part of these scenarios is the employee will often be too embarrassed or not even realize what happened and you will never know that a bad-guy has access to your entire business system now. Weeks later when all your data gets encrypted, stolen, or maliciously used—you will never know who was the source of the leak because everyone was using the same password!

These are just a few examples of the dangerous of bad password habits and why if you care about your business, you need to care about your passwords. Give us a call or email with additional questions or to get a free network assessment from one of our owners! We can help manage your passwords in a secure and compliant password vault that will also guide you in creating and updating passwords frequently that are virtually uncrackable.

Christina Grady is the founder and owner of Occubit Technology Solutions. She has been fascinated by the role technology plays in everyday life since she was a child taking apart VCR's and remote control cars. Her passion for helping others creates a perfect bond with her IT background.

Top Passwords Used

More from our blog

See all posts
1 Comment
  1. Pingback:

  2. Pingback: bactrim 400/80 mg price

  3. Pingback: cheap viagra online australia

  4. Pingback: cheap augmentin 500/125 mg

  5. Pingback: atarax 25 mg pharmacy

  6. Pingback: cialis risks

  7. Pingback: amoxicillin 500mg capsules cost

  8. Pingback: aricept 10mg price

  9. Pingback: mtabs viagra

  10. Pingback:

  11. Pingback: arava 20 mg united states

  12. Pingback: antivert 25mg online

  13. Pingback: antabuse 500 mg usa

  14. Pingback: amoxicillin 250 mg without a prescription

  15. Pingback: amaryl 4mg purchase

  16. Pingback: cost of allopurinol 300 mg

  17. Pingback: allegra 180 mg price

  18. Pingback: how to purchase aldactone 100 mg

  19. Pingback: abilify 15 mg pills

  20. Pingback: viagra substitute

  21. Pingback: cheap viagra generic

  22. Pingback: where to buy viagra

  23. Pingback: lexapro 20mg no prescription

  24. Pingback: propecia 1mg medication

  25. Pingback: furosemide 40mg united states

  26. Pingback: tadalafil 10mg without prescription

  27. Pingback: sildenafil 120 mg pills

  28. Pingback: Cialis 80 mg australia

  29. Pingback:

  30. Pingback: Cialis 20mg tablet

  31. Pingback:

  32. Pingback: where to buy Cialis 40mg

  33. Pingback: cheap Cialis 20mg

  34. Pingback: non prescription viagra

  35. Pingback: viagra cheap

  36. Pingback: cialis online pharmacy

  37. Pingback: cialis ed

  38. Pingback: prices of cialis

  39. Pingback: viagra online generic

  40. Pingback: how to buy real viagra online

  41. Pingback: cialis generic online

  42. Pingback: sildenafil 100mg

  43. Pingback: viagra samples

  44. Pingback: viagra online

  45. Pingback: online casinos

  46. Pingback: real casino online

  47. Pingback: online casino games

  48. Pingback: cialis 5 mg

  49. Pingback: cialis to buy

  50. Pingback: generic cialis

  51. Pingback: new cialis

  52. Pingback: best real money online casinos

  53. Pingback: cialis 5 mg

  54. Pingback: slot machines for sale

  55. Pingback: golden nugget online casino

  56. Pingback: Medical and health information

  57. Pingback: online casinos

  58. Pingback: PhenQ helps in losing weight

  59. Pingback: viagra pills

  60. Pingback: Information on Brain and Nootropics

  61. Pingback: rtg casino list

  62. Pingback: loans online

  63. Pingback: payday loans

  64. Pingback: personal loan

  65. Pingback: legitimate online slots for money

  66. Pingback: play online casino real money

  67. Pingback: viagra 100mg

  68. Pingback: real casinos online no deposit

  69. Pingback: casino games online

  70. Pingback: order vardenafil

  71. Pingback: vardenafil dosage

  72. Pingback: vardenafil pill

  73. Pingback: generic cialis online

  74. Pingback: cialis mastercard

  75. Pingback: canada online pharmacy

  76. Pingback: canada pharmacy

  77. Pingback: online pharmacy

  78. Pingback: erectile dysfunction pills

  79. Pingback: non prescription erection pills

  80. Pingback: new ed pills

  81. Pingback: viagra 100mg

  82. Pingback: cheap viagra

  83. Pingback: viagra 100mg

  84. Pingback: viagra cialis

  85. Pingback: is there a generic cialis available?

  86. Pingback: when will cialis be over the counter

  87. Pingback: how to get cialis

  88. Pingback: cialis 20mg price

  89. Pingback: Generic viagra in canada

  90. Pingback: Free trial of viagra

  91. Pingback: cialis online canada

  92. Pingback: generic for cialis

  93. Pingback: goodrx cialis

  94. Pingback: Free trial of viagra

  95. Christina with Occubit took care of a major and recurring security issue I was having with my personal email and Facebook. I have never experienced IT support like I did working with her. She went above and beyond and combed through several email accounts and my social media accounts to remove malicious settings that a hacker had put in. She set all my accounts to have 2-step verification after the clean up to prevent the perp from getting in again. She also did some investigative work and even found out how my password got leaked in the first place. I deeply appreciate her attention to detail and genuine concern about the security of my accounts. I would highly recommend any business who needs IT consulting or technical support to give Occubit a call if they want more than just a quick fix or band aid for their technology issues.


Leave a Comment