London Daily

Focus on the big picture.
Thursday, Oct 16, 2025

These are the 20 most common passwords leaked on the dark web - make sure none of them are yours

These are the 20 most common passwords leaked on the dark web - make sure none of them are yours

Your go-to password might be easier to guess than you think.
That's according to a new report from mobile security firm Lookout, which recently published a list of the 20 passwords most commonly found in leaked account information on the dark web. The list ranges from simple number and letter sequences like "123456" and "Qwerty" to easily typed phrases like "Iloveyou."

Choosing easy-to-remember passwords is understandable: The average person has more than 100 different online accounts requiring passwords, according to online password manager NordPass. But simple passwords can be extremely easy for hackers to figure out, allowing them stress-free access to your personal data and accounts.

It's a timely concern. Cybersecurity experts say the current Russian-Ukrainian conflict could result in an uptick in cyberattacks around the world, with U.S. banks expressing concern this week that they could be targeted. That's on top of a record number of data breaches in the U.S. last year – 1,862, up 68% from 2020 – according to a January report from the nonprofit Identity Theft Resource Center.

Lookout, which makes cloud security apps for mobile devices, noted in a December blog post that, on average, 80% of consumers have had their emails leaked onto the dark web. You could easily be among that majority without even knowing it.

Those leaked emails often lead hackers directly to your passwords for other online accounts and identity theft, Lookout said. Here's the company's list of the 20 passwords most commonly found on the dark web, due to data breaches:

123456
123456789
Qwerty
Password
12345
12345678
111111
1234567
123123
Qwerty123
1q2w3e
1234567890
DEFAULT
0
Abc123
654321
123321
Qwertyuiop
Iloveyou
666666

If you use any of the above passwords for any of your online accounts, you'd be wise to swap them out for something more secure. Cybersecurity experts often recommend picking something longer than the minimum number of recommended characters, and using uncommon characters – like punctuation marks or other symbols – in place of letters and numbers, to make your password harder to guess.

Lookout also noted that the majority of people reuse passwords for multiple accounts, which is a practice you should avoid whenever possible. If hackers can get into one of your accounts, you can at least make it harder for them to get into the rest of them.

You should also figure out which pieces of information about you and your family are publicly available, and avoid using passwords that include that information – including birthdays, anniversaries, names of loved ones and even your hometown.

The U.S. Commerce Department's National Institute of Standards and Technology also recommends screening your passwords against online lists of compromised passwords and using multifactor authentication, among other security tactics.
Newsletter

Related Articles

0:00
0:00
Close
Australia’s Wedgetail Spies Aid NATO Response as Russian MiGs Breach Estonian Airspace
McGowan Urges Chalmers to Cut Spending Over Tax Hike to Close $20 Billion Budget Gap
Victoria Orders Review of Transgender Prison Placement Amid Safety Concerns for Female Inmates
U.S. Treasury Mobilises New $20 Billion Debt Facility to Stabilise Argentina
French Business Leaders Decry Budget as Macron’s Pro-Enterprise Promise Undermined
Trump Claims Modi Pledged India Would End Russian Oil Imports Amid U.S. Tariff Pressure
Surging AI Startup Valuations Fuel Bubble Concerns Among Top Investors
Australian Punter Archie Wilson Tears Up During Nebraska Press Conference, Sparking Conversation on Male Vulnerability
Australia Confirms U.S. Access to Upgraded Submarine Shipyard Under AUKUS Deal
“Firepower” Promised for Ukraine as NATO Ministers Meet — But U.S. Tomahawks Remain Undecided
Brands Confront New Dilemma as Extremists Adopt Fashion Labels
The Sydney Sweeney and Jeans Storm: “The Outcome Surpassed Our Wildest Dreams”
Erika Kirk Delivers Moving Tribute at White House as Trump Awards Charlie Presidential Medal of Freedom
British Food Influencer ‘Big John’ Detained in Australia After Visa Dispute
ScamBodia: The Chinese Fraud Empire Shielded by Cambodia’s Ruling Elite
French PM Suspends Macron’s Pension Reform Until After 2027 in Bid to Stabilize Government
Orange, Bouygues and Free Make €17 Billion Bid for Drahi’s Altice France Telecom Assets
Dutch Government Seizes Chipmaker After U.S. Presses for Removal of Chinese CEO
Bessent Accuses China of Dragging Down Global Economy Amid New Trade Curbs
U.S. Revokes Visas of Foreign Nationals Who ‘Celebrated’ Charlie Kirk’s Assassination
AI and Cybersecurity at Forefront as GITEX Global 2025 Kicks Off in Dubai
DJI Loses Appeal to Remove Pentagon’s ‘Chinese Military Company’ Label
EU Deploys New Biometric Entry/Exit System: What Non-EU Travelers Must Know
Australian Prime Minister’s Private Number Exposed Through AI Contact Scraper
Ex-Microsoft Engineer Confirms Famous Windows XP Key Was Leaked Corporate License, Not a Hack
China’s lesson for the US: it takes more than chips to win the AI race
Australia Faces Demographic Risk as Fertility Falls to Record Low
California County Reinstates Mask Mandate in Health Facilities as Respiratory Illness Risk Rises
Israel and Hamas Agree to First Phase of Trump-Brokered Gaza Truce, Hostages to Be Freed
French Political Turmoil Elevates Marine Le Pen as Rassemblement National Poised for Power
China Unveils Sweeping Rare Earth Export Controls to Shield ‘National Security’
The Davos Set in Decline: Why the World Economic Forum’s Power Must Be Challenged
France: Less Than a Month After His Appointment, the New French Prime Minister Resigns
Hungarian Prime Minister Viktor Orbán stated that Hungary will not adopt the euro because the European Union is falling apart.
Sarah Mullally Becomes First Woman Appointed Archbishop of Canterbury
Mayor in western Germany in intensive care after stabbing
Australian government pays Deloitte nearly half a million dollars for a report built on fabricated quotes, fake citations, and AI-generated nonsense.
US Prosecutors Gained Legal Approval to Hack Telegram Servers
Macron Faces Intensifying Pressure to Resign or Trigger New Elections Amid France’s Political Turmoil
Standard Chartered Names Roberto Hoornweg as Sole Head of Corporate & Investment Banking
UK Asylum Housing Firm Faces Backlash Over £187 Million Profits and Poor Living Conditions
UK Police Crack Major Gang in Smuggling of up to 40,000 Stolen Phones to China
BYD’s UK Sales Soar Nearly Nine-Fold, Making Britain Its Biggest Market Outside China
Trump Proposes Farm Bailout from Tariff Revenues Amid Backlash from Other Industries
FIFA Accuses Malaysia of Forging Citizenship Documents, Suspends Seven Footballers
Latvia to Bar Tourist and Occasional Buses to Russia and Belarus Until 2026
A Dollar Coin Featuring Trump’s Portrait Expected to Be Issued Next Year
Australia Orders X to Block Murder Videos, Citing Online Safety and Public Exposure
Three Scientists Awarded Nobel Prize in Medicine for Discovery of Immune Self-Tolerance Mechanism
OpenAI and AMD Forge Landmark AI-Chip Alliance with Equity Option
×