Weak and reused passwords are one of the biggest cybersecurity risks facing UK residents. When a data breach exposes your password criminals try it on every major website — banking, email, social media — in seconds. Strong unique passwords are your first line of defence.
If any of your passwords resemble these change them immediately on every account where you use them.
A strong password is long, random and unique. Here are examples of strong passwords:
The key principles are at least 12 characters, a mix of uppercase, lowercase, numbers and symbols, no dictionary words used alone, unique for every account and not containing personal information like your name or birthday.
The average person has over 100 online accounts. Remembering unique strong passwords for all of them is impossible — which is why most people reuse passwords. The solution is a password manager.
Two factor authentication adds a second verification step when logging in — usually a code sent to your phone or generated by an app. Even if a criminal has your password they cannot access your account without the second factor.
Enable 2FA on your email account first — this is the most important because it is used to reset passwords for everything else. Then enable it on banking, social media and any other important accounts.
Visit haveibeenpwned.com and enter your email to see if your accounts have been in known data breaches. You can also check specific passwords at haveibeenpwned.com/Passwords — this checks if a password appears in breach databases without ever sending your actual password.
Practical cybersecurity advice for UK residents delivered weekly
Silent Erase monitors the dark web daily and alerts you instantly when your data appears in new breaches
Start Free Scan — silenterase.com