News Biggest password database posted in history spills 10 billion passwords — RockYou2024 is a massive compilation of known passwords

in_the_loop

Distinguished
Dec 15, 2007
174
26
18,710
10 billion passwords...
Wonder if they count unique passwords or if this is just all the accounts passwords that may be duplicated all over the place which is a big problem.
One person may use a lot accounts for different sites and if he uses the same password all over (Something that the lazy person may do) then it will mean that there are loads of duplicates for these 10 billion passwords.
In addition to that all the simple guessable "12345678","qwertyuiop" and "password123" and the likes to take into account of the seriousness of this....
 
I'm not surprised this wasn't mentioned, but Edge does check all stored passwords to see if they have been involved in breaches, as does Chrome, and Firefox, so most of the passwords involved, the older ones, have likely been changed already.
 
  • Like
Reactions: Nitrate55

brandonjclark

Distinguished
Dec 15, 2008
588
253
20,020
I'm not surprised this wasn't mentioned, but Edge does check all stored passwords to see if they have been involved in breaches, as does Chrome, and Firefox, so most of the passwords involved, the older ones, have likely been changed already.
IF (and this is IF I'm still right) you haven't disabled that "feature" of Microsoft knowing your password.
 

TheOtherOne

Distinguished
Oct 19, 2013
243
86
18,670
"So, between RockYou2021 and RockYou2024, only about 1.5 billion more passwords were added to the list."

Phew, nothing to worry here. Tis just a scratch!
 
Jul 7, 2024
1
1
10
what they do with all theses hashes?
Today we store passwords hashed / and salted.
They intend to waste money on decrypting hashes ?
Besides that if 2fa is used the whole thing renders useless.
Rather spend money cleaning earth :)
 
  • Like
Reactions: Nitrate55

Vanderlindemedia

Commendable
Jul 15, 2022
132
73
1,660
For hackers a good password list is mandatory. I know because at least 18 years ago i used to hack myself. Many people where not aware of the weak encryption, websites or dangers it had in regards of passwords, and many folks used one password for lots of things. Even mail, with zero 2 step auth and such.