Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Password Can Probably be Cracked Faster Than You’d Think

Your Password Can Probably be Cracked Faster Than You’d Think

Whether you’re talking about identity theft, data breaches, or any other form of cybercrime, one of the leading causes of successful cyberattacks is the use of insufficiently secure passwords. Just how easy is it for someone to bypass such a password? Let’s consider the facts.

How to Crack a Password

Cybercriminals come correct, first of all. Not only do many of them have access to some pretty sophisticated tools and resources, they go about their selfish and deceitful activities with a strategy based on the average user’s online conduct.

For the cybercriminal, bypassing a password is really a numbers game. Chances are good that, if they try some commonly used passwords, a cybercriminal will eventually hit pay dirt. For instance, a cybercriminal’s first guesses could look like the following:

  • 123456789
  • guest
  • qwerty
  • password
  • a1b2c3

Since these are some of the world’s most common passwords—with an estimated 10 to 20% of accounts using a similar password—trying different variations of them or adding one or two symbols gives a cybercriminal a pretty good chance of getting in.

If we imagine ourselves to be cybercriminals, this knowledge helps to simplify our process immensely. If we invest in a password cracking tool, which effectively just tries every dictionary word and randomized combination of characters, increasing in length as it goes, chances are good that we will ultimately get in.

It’s just like trying to guess a combination lock number. While it’s going to take some time, you could try every possible combination—1-1-1, 1-1-2, 1-1-3—until you either get it, or the bike’s owner is back and not-so-politely asking you to step away from their property. 

The more variables there are to try, the more possible options there are—increasing at exponential rates, making it impossible to manually try every single combination. A computer, on the other hand, could try…and much, much faster. That’s how a password-cracking tool operates.

How Long Before a Password is Cracked?

It all depends on the password. Many of the tools that these cybercriminals will use will try the usual suspects first, and will therefore crack the password immediately. The shorter, weaker passwords can take fractions of a second, with these tools testing millions of potential credentials in that time.

It also depends on the hardware the cybercriminal is using, as a more powerful system will allow the attacker to test potential passwords that much faster. Let’s go over how speedily a reasonably powerful laptop could crack a password, based on how long the password is, and how complicated it is:

As pictured, weak—or short and simple passwords—would fold immediately, holding out for a few seconds or minutes at best. However, once a password is designed to be longer and more complex, the likelihood of a password being cracked within someone’s lifetime becomes far smaller…arguably impossible.

That is, however, assuming that your password’s length and complexity aren’t wholly reliant on a combination of otherwise common (and therefore, insecure) words or phrases. Sure, “!password12345” may seem to meet some of the basic requirements for a password—and based on the password chart above, should take a million years to figure out—the use of common password trends makes it far easier to figure out.

This is precisely why we always advocate for more stringent password practices to ensure each and every one is sufficiently secure. These practices include the aforementioned length and complexity requirements, and avoiding things that could be guessed somewhat easily, including pet names, birthdays, and other common factors. Of course, passwords should never be used more than once, as in, you need a separate password for each account you’re securing.

It is also important to keep in mind that the results generated above could be accomplished using resources that are out there and available, using a basic tool on a common laptop. An invested cybercriminal very well could have additional resources at their disposal, things like botnets and significant cloud resources, along with the hardware needed to power through a brute force attempt much faster than our hypothetical mid-range laptop could.

The big takeaway: ALWAYS use strong and secure passwords.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 28 January 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Hardware Efficiency Network Security User Tips Internet Malware IT Support Privacy IT Services Google Email Workplace Tips Computer Phishing Collaboration Hosted Solutions Workplace Strategy Users Ransomware Mobile Device Backup Small Business Microsoft Productivity Quick Tips Managed Service Passwords Saving Money Communication Cybersecurity Smartphone Data Backup Android Upgrade Disaster Recovery Data Recovery AI VoIP Business Management Smartphones Mobile Devices communications Windows Browser Social Media Microsoft Office Managed IT Services Network Current Events Tech Term Internet of Things Remote Automation Artificial Intelligence Facebook Miscellaneous Information Holiday Covid-19 Gadgets Cloud Computing Training Server Managed Service Provider Compliance Remote Work IT Support Outsourced IT Encryption Spam Employee/Employer Relationship Windows 10 Office Business Continuity Data Management Government Business Technology Bandwidth Windows 10 Virtualization Blockchain Wi-Fi Mobile Office Data Security Apps Vendor Two-factor Authentication Managed Services Tip of the week Voice over Internet Protocol Chrome Mobile Device Management Budget Gmail Apple Networking WiFi App Employer-Employee Relationship BYOD Avoiding Downtime Office 365 Marketing Conferencing How To BDR HIPAA Computing Applications Information Technology Hacker Access Control Help Desk Office Tips Analytics Website Augmented Reality Healthcare Retail Storage Password Bring Your Own Device Managed IT Services Big Data Operating System Router Virtual Private Network Risk Management 2FA Computers Health Monitoring Remote Workers Document Management Firewall Telephone Scam Free Resource Project Management Data loss Windows 7 The Internet of Things Cooperation Microsoft 365 Going Green Patch Management Solutions Social Save Money Remote Monitoring Vulnerability End of Support Vendor Management Cybercrime Physical Security Customer Service Windows 11 Display Printer Paperless Office Excel Infrastructure Virtual Machines Professional Services Smart Technology Outlook Machine Learning Money Saving Time Word Humor iPhone Managed IT Service Maintenance Antivirus Vulnerabilities Sports Downloads Mouse Data Privacy Licensing Safety Images 101 Entertainment Administration Mobility Multi-Factor Authentication Telephone System Robot Cost Management Settings Employees Printing Integration Wireless Content Filtering IT Management Customer Relationship Management VPN YouTube Meetings Holidays Cryptocurrency User Tip Modem Hacking Computer Repair Mobile Security Data Storage Processor Presentation Supply Chain Video Conferencing Virtual Desktop Data storage Managed Services Provider LiFi Wireless Technology Windows 8 IP Address Workplace Laptop Websites Mirgation Gig Economy Internet Service Provider Drones Teamwork Hiring/Firing Nanotechnology Evernote Paperless Electronic Medical Records Language Regulations Compliance SharePoint Addiction Memes Management Co-managed IT Halloween Chatbots Recovery Net Neutrality Lenovo SQL Server Technology Care Screen Reader Hard Drives Writing Distributed Denial of Service Domains Business Communications Virtual Reality Computing Infrastructure Financial Data History Service Level Agreement IT Hacks Server Management Scams Scary Stories Private Cloud Identity Smartwatch Procurement Superfish Bookmark Azure Hybrid Work Identity Theft Smart Tech Refrigeration Fun Public Speaking Tech Human Resources Twitter Alerts Telework Cyber security Deep Learning Download Communitications Lithium-ion battery Cables Error CES Entrepreneur Supply Chain Management Browsers Education Connectivity Social Engineering Break Fix Term Google Apps Remote Computing FinTech Upload IT Assessment Mobile Computing Social Network IT Maintenance Multi-Factor Security Flexibility Value Business Intelligence Tablet IoT Undo Search Dark Web Best Practice Trends Shortcuts Alert Organization Smart Devices Managed IT Customer Resource management Ransmoware Buisness File Sharing Regulations Dark Data Google Calendar Digital Security Cameras How To Microsoft Excel Remote Working Legal Data Analysis Memory Vendors IT solutions Star Wars Business Growth Gamification Google Play Be Proactive Notifications Staff Data Breach Electronic Health Records Workforce Travel Social Networking Application Legislation Videos Cortana Techology Fileless Malware Wasting Time Threats Google Maps Alt Codes Content IBM Security Cameras Workplace Strategies Wearable Technology Trend Micro Software as a Service Health IT Meta Downtime Unified Threat Management Motherboard Comparison Permissions Unified Threat Management Directions Managing Costs Amazon Hosted Solution Assessment eCommerce Typing SSID Surveillance Virtual Assistant Outsource IT Network Congestion Specifications Media Knowledge Fraud Google Drive User Error Microchip Virtual Machine Environment Internet Exlporer Competition Username Medical IT Reviews Development Transportation Small Businesses Point of Sale 5G Black Friday Experience Google Docs Hypervisor Displays Unified Communications Database Optimization Bitcoin Network Management PowerPoint Running Cable Tech Support IT Technicians User Shopping Google Wallet Proxy Server Employer/Employee Relationships Outsourcing Cookies Monitors Cyber Monday Navigation Hotspot PCI DSS Tactics

Blog Archive