Is the password ill-equipped for the modern world?
It’s been around since pretty much the dawn of computing, but can the humble password ever again be regarded as secure?

Furthermore, around a quarter of users are believed to have a password that's based around the 1,000 most popular, lists of which aren't tricky to gleam from the web. A brute force attack on a password, using modern computing power, could devour such a list in a matter of minutes. Adding some of the most popular suffixes to the recipe would still fail to trouble a brute force attack. And more worryingly, users continue to demonstrate a willingness to either share their password with others, or simply make it so easy to guess, that it's borderline redundant.
Stuck in their ways
To further compound the problem, once many users have decided on their password, then that's it. There's no hope of persuading them to change it, unless a network has a specific policy that enforces such a change (which is, arguably, of limited use).
Of greater concern, one single password then gets applied pretty much across the board. It finds itself standing between outsiders and the likes of online banking, PayPal, social networking sites and business accounts, and rarely under duress could it put up any kind of spirited defence. That said, this is also a by-product of the modern day society, where users are expecting to remember a cornucopia of PINs and passwords. It is any wonder that a good number of people tend to rely on old favourites?
So where does the password sit in the modern day world? Arguably in too powerful a position seems to be the answer. Companies are inevitably investigating ways they can beef this up, including employing password filtering software, which rejects any words that it feels are too weak, and instead encourages users to come up with something of more strength. Then, of course, we move into the world of biometrics and fingerprint scanners, when security is absolutely paramount, with an assortment of other solutions regularly arising too.
And yet the humble password should be able to do more than it currently delivers. As part of a rounded security system, the password still manages to keep most general and casual users at bay, and it does still take a small level of commitment to try and work out what a user's password is. There's an argument that runs that dedicated hackers will always find a way, and while that's little excuse for not making it as difficult as possible, as a general deterrent, a password really does have its place.
They key problem remains, of course, one of education. Until users fully appreciate the potential fallout of a compromised password or until, more specifically, something happens to them then the chances are that it'll still be seen as yet another word to remember, rather than the potent security tool that it could and should be.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
One hint though, if you happen to be running for high office in the US: beef up your security a bit, eh?
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd
-
Iranian hackers targeted nuclear expert, ported Windows infection chain to Mac in a week
News Fresh research demonstrates the sophistication and capability of state-sponsored threat actors to compromise diverse targets
By Richard Speed
-
The top malware and ransomware threats for April 2023
News New ransomware gangs and malware abound as hackers continue to evolve their tactics
By Connor Jones
-
How we test security software
Reviews Everything you need to know about our benchmarking process for antivirus products
By IT Pro
-
Avira Free Security review: An effective antimalware suite, but heavy on the marketing
Reviews It’s hard to fully appreciate Avira’s malware protection when the packaging feels so manipulative
By Darien Graham-Smith
-
Kaspersky Free review: Effective and lightweight – everything you want from a free antivirus solution
Reviews It’ll be a real shame if politics means people missing out on this top-class security tool
By Darien Graham-Smith
-
McAfee Total Protection review: Quick, effective and affordable
Reviews A solid security choice, with perfect malware protection, a fully functional VPN and more
By ITPro
-
AVG Internet Security review: Money for nothing
Reviews An ostensible upgrade from the free Avast package – but there’s very little here to justify the cost
By Darien Graham-Smith
-
Avira Antivirus Pro review: Obnoxious and annoying
Reviews This antivirus tool does the job, but it’s expensive – and the in-app advertising really sticks in the throat
By Darien Graham-Smith