IT Admins Continue to Use Weak Passwords

Stu Sjouwerman | Nov 6, 2023

IUsers Use Same Passwordsn an analysis of web pages identified as admin portals, some incredibly weak passwords were identified – and some of them are going to really surprise you.

We all know the general drill with admin passwords – make them complex and long.  Simple right?  But a new analysis of admin passwords shows that IT admins seem to not be vigilant around good password hygiene. 

According to an analysis of 1.8 million passwords by security vendor Outpost24, the top 20 passwords they found are really bad:

  1. admin
  2. 123456
  3. 12345678
  4. 1234
  5. Password
  6. 123
  7. 12345
  8. admin123
  9. 123456789
  10. adminisp
  11. demo
  12. root
  13. 123123
  14. admin@123
  15. 123456aA@
  16. 01031974
  17. Admin@123
  18. 111111
  19. admin1234
  20. admin1

Note that the number one password is “admin."  Seriously?  In today’s cybersecurity climate, IT pros are still using these passwords?

This shows that even IT pros need to be enrolled in continual security awareness training so they are reminded of the need for good password hygiene – which includes the use of properly secure passwords.

KnowBe4 enables your workforce to make smarter security decisions every day. Over 65,000 organizations worldwide trust the KnowBe4 platform to strengthen their security culture and reduce human risk.

Identify Your Exposed and Vulnerable Accounts

Stolen or weak passwords account for 81% of hacking-related breaches. Run our Free Password Exposure Test to scan your Active Directory for compromised emails and weak credentials.

Get Your Free Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.