Test Your Password Strength

Posted on August 4, 2010 at 5:31 am

Despite the thousands of warnings telling us not to use the same password for every site, most of us use the same password, or a variation of that password on most Web services for the simple reason that multiple passwords are hard to remember. Since this practice is unlikely to change, the one password we do use must be a strong one.

One of the most interesting places to test a password’s strength is howsecureismypassword.net. The process is easy: type in your password, and the site tells how much time it would take for a PC to calculate your password in a normal, brute-force attack where characters are generated randomly until the password is found.

howsecure

Keep in  mind that if you are using a single word as a password, the site’s determination is inaccurate, since most likely a hacker will use a dictionary-based attach before a brute-force attack, meaning your serendipity will be found in seconds. Moral of the story: if you are using a one word password with no numbers added to it, find a new password. Quickly.

Another site that tests password strength is passwordmeter.com. Passwords are scored based on how many unique characters they use.

password meter

This rubric considers using a mixture of uppercase letters, lowercase letters, numbers and symbols the best way to thwart hackers. However, not all Web services allow special characters like & and @, and many are not case sensitive.

Testyourpassword.com is one of the most useful of the ways to test passwords. Besides rating the strength of a password based on much of the same criteria as the other tests, Testyourpassword.com generates random passwords based on criteria you provide.

generate password

Once the password is generated, the strength tester rates it. Obviously, if the generated password is not strong, you should make corrections to the password until it is.

password tester

We tested the same password at each of these sites, with differing results. All of the testers agree, though: variation is key. Use at least an uppercase letter, a lowercase letter, special character and number in your password—and make it more than 8 characters long.

» Filed Under Computer Tips

Related Posts

Comments

2 Responses to “Test Your Password Strength”

  1. rroberto said on :

    Call me paranoid, but how do we know these sites aren’t harvesting the passwords they test?


  2. John Shelton said on :

    “Call me paranoid, but how do we know these sites aren’t harvesting the passwords they test?”

    Because you do not use an actual password that you use to access your bank acccount. You make up a test password with the same number of letters (caps and lower case) and numbers and special characters in the same locations as your actual password. Your actual password would have the same strength.


Please post your comments/suggestions!