Password Cracking

5th February 2020 | Cybrary Password Cracking


Password Cracking refers to the various methods hackers use to learn exactly what password you use to protect one of your computer accounts. This can be accomplished by recovering passwords from data stored in, or transported from, a computer system, website, or dark web repository. Password cracking can be done by repeatedly guessing an account password (brute force approach), by using a password dictionary which iterates on the most common passwords people use (Hint: 12345678 and Password123), and even with rainbow tables

Password cracking is nearly always performed for malicious purposes, allowing a hacker to gain unauthorized access to your account to inflict damage or harm against you or your organization.

Related Terms: Password, Passphrase, Password Manager

Source: Techopedia

What should SMB’s do to Protect Against Password Cracking?

The best defense against Password cracking is strong password hygiene across your business.  The only effective way to accomplish this is to adopt and train your employees on how to use a Password Manager.  Please see CyberHoot’s password manager article for the many benefits as well as the risks that accompany the use of a password manager. 

Beyond a password manager, make sure to adopt NIST 2017 password recommendations of a 14+ character non-complex and rarely expiring (annual resets) password in your Active Directory domain and your O365/GSuite Email accounts.  This has been shown, after 10’s of thousands of compromises studied, to balance human memory and cybersecurity best practices for the best results.

Lastly, educate your users on why passwords matter through a robust cyber-education program.  CyberHoot can help with all of these things… visit our Training pages to learn more for free.  Please subscribe if you’d like to automate your compliance and ensure that every last employee has successfully completed their training!

To learn more about Password Cracking, watch this short video:

Are you doing enough to protect your business?

Sign up with CyberHoot today and sleep better knowing your

employees are cyber trained and on guard!


Sign Up Today!

Latest Blogs

Stay sharp with the latest security insights

Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.

Why Traditional Phishing Tests Fail — And How the Latest Research Proves It’s Time for a Change

Why Traditional Phishing Tests Fail — And How the Latest Research Proves It’s Time for a Change

For years, organizations have relied on fake email phishing simulations to measure employee resilience to...

Read more
Stopping Token Theft: How Microsoft’s Protections Prevent BEC Attacks

Stopping Token Theft: How Microsoft’s Protections Prevent BEC Attacks

Welcome to our two-part blog series on Microsoft’s new email security enhancement now included in Office 365 P1...

Read more
Why Hackers Love MSPs and What We’re Gonna Do About It

Why Hackers Love MSPs and What We’re Gonna Do About It

"Being an MSP today is like wearing a neon sign that says, ‘Hack me! I’m the gateway to 100...

Read more