Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Password Can Probably be Cracked Faster Than You’d Think

Your Password Can Probably be Cracked Faster Than You’d Think

Whether you’re talking about identity theft, data breaches, or any other form of cybercrime, one of the leading causes of successful cyberattacks is the use of insufficiently secure passwords. Just how easy is it for someone to bypass such a password? Let’s consider the facts.

How to Crack a Password

Cybercriminals come correct, first of all. Not only do many of them have access to some pretty sophisticated tools and resources, they go about their selfish and deceitful activities with a strategy based on the average user’s online conduct.

For the cybercriminal, bypassing a password is really a numbers game. Chances are good that, if they try some commonly used passwords, a cybercriminal will eventually hit pay dirt. For instance, a cybercriminal’s first guesses could look like the following:

  • 123456789
  • guest
  • qwerty
  • password
  • a1b2c3

Since these are some of the world’s most common passwords—with an estimated 10 to 20% of accounts using a similar password—trying different variations of them or adding one or two symbols gives a cybercriminal a pretty good chance of getting in.

If we imagine ourselves to be cybercriminals, this knowledge helps to simplify our process immensely. If we invest in a password cracking tool, which effectively just tries every dictionary word and randomized combination of characters, increasing in length as it goes, chances are good that we will ultimately get in.

It’s just like trying to guess a combination lock number. While it’s going to take some time, you could try every possible combination—1-1-1, 1-1-2, 1-1-3—until you either get it, or the bike’s owner is back and not-so-politely asking you to step away from their property. 

The more variables there are to try, the more possible options there are—increasing at exponential rates, making it impossible to manually try every single combination. A computer, on the other hand, could try…and much, much faster. That’s how a password-cracking tool operates.

How Long Before a Password is Cracked?

It all depends on the password. Many of the tools that these cybercriminals will use will try the usual suspects first, and will therefore crack the password immediately. The shorter, weaker passwords can take fractions of a second, with these tools testing millions of potential credentials in that time.

It also depends on the hardware the cybercriminal is using, as a more powerful system will allow the attacker to test potential passwords that much faster. Let’s go over how speedily a reasonably powerful laptop could crack a password, based on how long the password is, and how complicated it is:

As pictured, weak—or short and simple passwords—would fold immediately, holding out for a few seconds or minutes at best. However, once a password is designed to be longer and more complex, the likelihood of a password being cracked within someone’s lifetime becomes far smaller…arguably impossible.

That is, however, assuming that your password’s length and complexity aren’t wholly reliant on a combination of otherwise common (and therefore, insecure) words or phrases. Sure, “!password12345” may seem to meet some of the basic requirements for a password—and based on the password chart above, should take a million years to figure out—the use of common password trends makes it far easier to figure out.

This is precisely why we always advocate for more stringent password practices to ensure each and every one is sufficiently secure. These practices include the aforementioned length and complexity requirements, and avoiding things that could be guessed somewhat easily, including pet names, birthdays, and other common factors. Of course, passwords should never be used more than once, as in, you need a separate password for each account you’re securing.

It is also important to keep in mind that the results generated above could be accomplished using resources that are out there and available, using a basic tool on a common laptop. An invested cybercriminal very well could have additional resources at their disposal, things like botnets and significant cloud resources, along with the hardware needed to power through a brute force attempt much faster than our hypothetical mid-range laptop could.

The big takeaway: ALWAYS use strong and secure passwords.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Sunday, 14 December 2025

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Hardware Efficiency Network Security User Tips Internet Malware IT Support Privacy Google Email Workplace Tips Computer Phishing IT Services Collaboration Hosted Solutions Users Workplace Strategy Ransomware Mobile Device Microsoft Small Business Backup Productivity Passwords Quick Tips Cybersecurity Saving Money Communication Managed Service Data Backup Smartphone Android Upgrade VoIP Business Management Data Recovery Smartphones AI Disaster Recovery Mobile Devices communications Windows Browser Social Media Microsoft Office Managed IT Services Current Events Network Tech Term Remote Internet of Things Information Artificial Intelligence Automation Facebook Miscellaneous Cloud Computing Covid-19 Holiday Training Gadgets Server Remote Work Managed Service Provider Outsourced IT Compliance IT Support Employee/Employer Relationship Encryption Spam Office Windows 10 Business Continuity Data Management Government Bandwidth Business Technology Windows 10 Virtualization Wi-Fi Blockchain Two-factor Authentication Vendor Mobile Office Apps Data Security BYOD Chrome Mobile Device Management Budget Gmail Tip of the week Apple Managed Services Voice over Internet Protocol App Networking Employer-Employee Relationship HIPAA Avoiding Downtime Office 365 Applications Marketing Access Control Conferencing WiFi How To Computing BDR Information Technology Hacker 2FA Router Office Tips Analytics Website Virtual Private Network Augmented Reality Health Storage Password Help Desk Bring Your Own Device Retail Big Data Healthcare Managed IT Services Operating System Risk Management Computers Vendor Management Solutions Physical Security Excel Display Printer Paperless Office Infrastructure Monitoring Firewall Document Management The Internet of Things Remote Workers Telephone Going Green Scam Social Data loss Cooperation Free Resource Cybercrime Project Management Windows 7 Customer Service Patch Management Save Money Microsoft 365 Remote Monitoring Windows 11 Vulnerability End of Support Virtual Desktop IT Management Data storage Supply Chain LiFi Wireless Technology VPN Employees Meetings Integration Outlook User Tip Modem Computer Repair Mobile Security Money Processor Word Humor Holidays Data Storage Sports Smart Technology Mouse Video Conferencing Machine Learning Managed Services Provider Data Privacy Safety Saving Time Virtual Machines Professional Services Administration Managed IT Service Maintenance Antivirus Downloads iPhone Licensing Settings Printing Entertainment Wireless Vulnerabilities Content Filtering Customer Relationship Management Images 101 YouTube Cryptocurrency Telephone System Multi-Factor Authentication Robot Mobility Hacking Cost Management Presentation Permissions Displays Google Wallet Unified Threat Management Directions Videos Assessment Electronic Health Records Wasting Time Outsourcing Windows 8 IP Address Laptop Trend Micro Network Congestion Specifications Security Cameras Fraud Drones User Error Microchip Internet Exlporer Software as a Service Username Managing Costs Workplace Hiring/Firing Halloween Recovery Point of Sale eCommerce Black Friday SSID Virtual Assistant Paperless Hard Drives Database Surveillance Network Management Tech Support IT Technicians Virtual Machine Co-managed IT Domains Technology Care Hacks Proxy Server Reviews Scary Stories Cookies Monitors Cyber Monday Medical IT Hotspot Transportation Business Communications Refrigeration Tactics Development Fun Websites Mirgation Hypervisor Scams Deep Learning Public Speaking Hybrid Work Lithium-ion battery Shopping Nanotechnology Optimization PowerPoint Electronic Medical Records Language Employer/Employee Relationships Human Resources SharePoint Education Addiction Entrepreneur Management PCI DSS Chatbots Navigation Cables Mobile Computing Lenovo Gig Economy Screen Reader Writing Distributed Denial of Service Virtual Reality Computing Infrastructure Teamwork Google Apps Undo Service Level Agreement Internet Service Provider Search Server Management Regulations Compliance Private Cloud Identity Evernote IT Maintenance Best Practice Business Intelligence Superfish Bookmark Buisness Identity Theft Smart Tech Memes Twitter Alerts SQL Server Legal Shortcuts IT solutions Download Net Neutrality Financial Data Error History Ransmoware Business Growth Vendors Browsers Smartwatch Application Connectivity IT Social Engineering Break Fix Remote Computing Azure Be Proactive Upload Procurement Cortana Alt Codes IBM Social Network Telework Cyber security Multi-Factor Security Tech Workforce Threats CES Downtime Tablet IoT Communitications Dark Web Alert Workplace Strategies Hosted Solution Trends Supply Chain Management Typing Managed IT Customer Resource management FinTech File Sharing Regulations Dark Data Google Calendar Term Meta Amazon Data Analysis Star Wars IT Assessment How To Microsoft Excel Knowledge Notifications Staff Value Google Drive Competition Gamification Flexibility Organization Travel Social Networking Legislation Outsource IT Environment Media Techology Fileless Malware Digital Security Cameras Google Maps Smart Devices 5G Content Remote Working Experience Wearable Technology Memory Google Docs Unified Communications Bitcoin Health IT Running Cable User Unified Threat Management Motherboard Data Breach Comparison Google Play Small Businesses

Blog Archive