Annoying Password Rules Actually Make Us Less Secure

Forcing users to change their passwords, mandating special characters are outdated but persistent rules. ‘Some bits of old password wisdom have turned into a bit of a religion.’

Laura Liedo

Does your company network or a frequently visited website force you to come up with a new password because it has declared your old one is past its expiration date?

If you find that annoying, you’re not alone. What’s worse: It’s actually bad for cybersecurity, say researchers.

What's News

Continue reading your article with
a WSJ subscription

Subscribe Now

Already a member? Sign In

Sponsored Offers
  • TurboTax:
    TurboTax service code 2023 - $15 off
  • GoPro:
    Student discount promo code: $100 off the GoPro HERO11
  • Samsung:
    Samsung promo code - Up to 40% off + free shipping
  • Dell:
    Sign up and receive a 10% Discount
  • Wayfair:
    Wayfair's Weekend Sale: Up to 70% off
  • Target:
    Target Promo Code: 20% off Entire Order