We know people default to bad passwords, whether for their computers or banking PINs. But, we have to stress this here, people are really bad at picking passwords. This infographic visualizes that idea by taking all of the possible combinations and mapping them based on frequency of use.
A data set of 3.4 million pins was used. The first two digits are on the horizontal end; the second two on the vertical end. That perfectly diagonal yellow line streaking across it shows the frequency of 1111, 2222, etc. Data Genetics crunched the numbers (based on "released/exposed/discovered password tables and security breaches") used in the graphic, and came up with some fascinating finds:
There are better ways to pick a password.
[Data Genetics via visual.ly]
Five amazing, clean technologies that will set us free, in this month's energy-focused issue. Also: how to build a better bomb detector, the robotic toys that are raising your children, a human catapult, the world's smallest arcade, and much more.


Online Content Director: Suzanne LaBarre | Email
Senior Editor: Paul Adams | Email
Associate Editor: Dan Nosowitz | Email
Assistant Editor: Colin Lecher | Email
Assistant Editor: Rose Pastore | Email
Contributing Writers:
Rebecca Boyle | Email
Kelsey D. Atherton | Email
Francie Diep | Email
Shaunacy Ferro | Email
I believe the conclusions here are partially flawed. If the only passwords used are, "released/exposed/discovered password tables and security breaches", then it would be natural to assume that the weakest passwords are the ones being studied. So its hard to assume that you can break 20% of pins by just typing 1234 or 1111.
I really appreciate PoPSci posting this and educating those who continue to use weak passwords.
The point is, most passwords don't protect anything, and I'm surprised that this article didn't presume that. Many accounts shouldn't require passwords because they don't have value and no one is hacking into them. I use the same password for almost all of my accounts because they contain nothing of value to me. Only my bank accounts have "secure" passwords, some of which have additional security features.
@spark55155, it matters less if your accounts contain something valuable and more that can can be used to *obtain* something of value. For instance, if cracking your popsci password gives me your password to other blogging/posting accounts, i might get enough personal information about you to "prove" that I am you to your bank.
I'm not saying that's the case, just that it seems reckless to invite identity theft or encourage others to take their security for granted.
I wonder how many people are going to change their ATM pin numbers to 8068 in the next few days...
Dark Helmet: So the combination is... one, two, three, four, five? That's the stupidest combination I've ever heard in my life! That's the kind of thing an idiot would have on his luggage!
Dark Helmet: It worked, sir. We have the combination.
President Skroob: Great. Now we can take every last breath of fresh air from Planet Druidia. What's the combination?
Colonel Sandurz: 1-2-3-4-5
President Skroob: 1-2-3-4-5?
Colonel Sandurz: Yes!
President Skroob: That's amazing. I've got the same combination on my luggage.
Dark Helmet, Colonel Sandurz: [looks at each other]
I just got paid $6784 working off my laptop this month. And if you think that's cool, my divorced friend has twin toddlers and made over $9k her first month. It feels so good making so much money when other people have to work for so much less. This is what I do, Red97.com