WARNING: Americans’ Password Habits are Horrible, Putting Organizations at Risk

Stu Sjouwerman | Nov 4, 2020

Passwords HabitsNew data shows the average American uses short, uncomplicated, and often predictable passwords, practices which only increase the insecurity of corporate user accounts.

Today, the password is a primary means of authenticating whether you are the owner of a given account or not. So, it stands to reason that passwords need to be secure. But new data from Security.org’s America’s Password Habits: 2020 report shows that American’s are more concerned with ease of use than an improved security stance:

  • Nearly half (45%) of Americans use passwords that are less than eight characters!
  • One-quarter share their personal passwords with others!
  • Only 15% use a strong password generator

One of the problems may be that 37% rely on memory (more than any other method in the report) to keep track of passwords.

These password habits transfer to the organization, where users seek to simplify their navigation of corporate security.

There are a few best practices organizations can implement to help offset this:

  • Have an enforced password policy that dictates minimum password length and complexity
  • Use Multi-Factor Authentication
  • Enroll users in Security Awareness Training so they understand why it’s important to have unique and secure passwords for corporate accounts and how to create one

Are your user’s passwords ... P@ssw0rd?

Identify which users are using easily guessable or brute-forceable credentials before cybercriminals do. 

Get Your Weak Password Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.