Cybersecurity researchers analyzed 3TB of stolen passwords from 2022 to compile a list of the most common passwords. A list of the top 200 most common passwords was published by NordPass, most likely motivated in part to promote their password manager software, but nonetheless useful as a list of passwords to avoid.
The most common password to top the list was the word “password” itself, followed by many variations of simple sequences of numbers only, and sequences of letters in the order they appear on the keyboard, such as “qwertyuiop”. Each password in the list also included an estimated time required to crack that password using commonly available password cracking software. Most of the passwords in the list could be cracked in under one second, underscoring the ease of exploiting these weak passwords.