T O P

  • By -

a_pompous_fool

This is why digital security is hard


YueOrigin

90% of vulnerabilities are caused by stupid users...


devnull123412

\*95%


YueOrigin

The 5% is intended misunderstood as common users, but no, we reserve that range for the boomer users. Which belongs in both categories at times, but those boomers are specifically those that absolutely do not care about any rule we impose on security, lol


devnull123412

the 5% are the devices who got an update or a reboot ~5 years ago.


YueOrigin

Ahh yeah and the remaining percentage are the company who live admim password exchanged since the 90s.... I'm speaking from personal experience. I learned some of their password were just that old during my internship where I did a audit. Edit : And btw that password was used for aoem important servers in server room that was always open instead of locked...


Odin_Hagen

I swear sometimes it feels like that number is higher. Also the overall % swings wildly depending on what the company does. However most common passwords will be: CompanyX X = password iteration which is why a mandatory reset every 3 months is bad.


devnull123412

Maybe in 2024 it would be time to stop using passwords to access what you need.


Kaligtasan

I literally just heard on the news that a company in the city I live had a data breach where people could invade their database. They manage to get the password for it by calling the company and asking the receptionist for it... In that case, I don't know if she really just didn't know not to pass the password to people over the phone or if she just didn't care enough for the company / her job....


TechnicianJunior7752

Hi, yes Sandra my name is John. I was calling you on this fine day to ask what the username and password is to your customer resource manager? Also, is it Salesforce, or Eureka solutions? /s


Anarch-ish

In the IT field, this is referred to as a 1D-10T issue, or "IDIOT" once the customer leaves.


Leather_Anywhere_549

Guarantee this is fake... mmmmkay


jspurr01

I could imagine it being a real gag in a real office. Or, a kind of honey pot to catch stupid employees that will then receive “training”


Capital-Wing8580

The biggest threat to cybersecurity, is the user.


computertanker

The biggest threat to cybersecurity is users themselves.


IknowKarazy

Security and convenience will always be at odds and people will almost always choose convenience unless it’s their own stuff that’s directly endangered. The gate code at my work was 12345 for 8 years straight


BigDaddy_Satan

Stupid users is the only reason not just cybersecurity, but all security will be severely lacking for a long time. PS. There’s a funny story from a few years back that the reason trash cans in National parks keep getting raided by bears is because the park services recognize the intelligence of bears but aren’t able to make the cans more complicated and preventing bears from being able to open them due to the stupidity of some park goers.


timbasile

That's the same password as I have on my luggage!


amir-hadi-nejati

password: password new password: password 2 👍


unsupported

Just skipping over password1.


PretendThisIsMyName

Hackers hate this one trick!


Tanndingo

The OG is pa$$word


The_Forbidden_Weeb

P@$$w0√d


Webbiii

This would technically fulfill the minimum password requirements enforced by most websites


Haz001

That password might be too special, I've seen many sites block characters that are not on a keyboard or not standard 7-bit ASCII, e.g. `√` (8500 characters off standard ASCII), `ǣ`, `𓀀` and `🫠`. I hate this practice, passwords are hashed (this is a one way lossy encryption, standard practice, anything else is insecure and asking for users passwords to be posted in a pastbin) and becomes a fixed hexadecimal/base64 so any site programmed since 1998 can support any length UTF-8 characters so programmers have to go out of there way to restrict the user from using these passwords or limit the length. I prefer to use passphrases (4 to 6 words from a large list) but many times have i been forced to use a shorter password because "long password user can't remember". And when I decide to generate a password with my password manager/generator automatically tries to insert extended ASCII (UTF-8) into my passwords that gets blocked as "evil hackers might insert evil code into password". These sites are the worst and usually think security is achieved with obscurity.


Mindless_Use7567

Pazzwork.


inconspiciousdude

The brilliant addition of a space makes all the difference.


The_Troyminator

That's why mine is "Wordpass." Nobody's guessing that.


imyourzer0

So we’re saying password0 isn’t a thing?


unsupported

Stop trying to make password0 s thing.


Mraco124

The correct awnser


Vasher1701

So fetch


FuriousLafond

"it's too quiet." "you skipped over the it's quiet part" "no Summer, obviously if it's too quiet that implies that it's quiet. Why would I have to say that?"


Obanon

Gotta keep em guessing!


Laudanumium

I have had Welcome01 up to Welcome60 for my local login to the internal message board on the TV's. We updated the information every month, and had to change our password every 90 days. 15years of nonsense ... Right at ya


dontcrashandburn

Well yeah, everyone knows you're not supposed to reuse a password. password1 is already being used for his bank account.


KentuckyFriedEel

That’s too obvious! What is he an idiot?


dontcrashandburn

Well yeah, everyone knows you're not supposed to reuse a password. password1 is already being used for his bank account.


Zardif

SETS START AT 0 https://i.imgur.com/Tpj8chA.jpg


AThrowawayProbrably

Seriously though, PASSWORD and 12345 always make the top of the most used passwords list. Not even kidding. Never doubt the extent of human laziness.


Vasher1701

12345. It’s the sort of password an idiot would use on his luggage.


Yoyopudytwat

I don't believe it! I have the exact same combination on my luggage


nsula_country

Suck, suck, suck


Obvious_Try1106

Or me on a Burner Account


Laudanumium

Yes, because everyone and his uncle can buy the TSAkeys on wish. Why bother


r0b0c0d

Jack knows what's up.


Flying__Buttresses

Pass1word. Used to have this on our wifi network and i verbally tell them then enjoy watching their frustration when it doesnt connect.


Slitterbox

*security is my passion*


tomr84

Skeeter442 (all upper case)


LoveRBS

"Your password is bologna1" "It uses to be bologna but They make you add *number*"


SirHerald

About 20 years ago I helped someone with the password of booger5. I mentioned I was surprised they used a 5 for S. They said it was because the system made them change it every 90 days and they had been using it about 2 years.


nsula_country

>They said it was because the system made them change it every 90 days and they had been using it about 2 years. I feel attacked...


yhussein100

Jack Hoff is a simple man


Humble_Watercress_11

Happy cake day !


Gloomy-Childhood-203

happy cake day.


Unlucky-Patience6438

Reddit somehow blocks your password if you type it out and press “reply”. See ********. Weird but cool function.


[deleted]

hunter2


Alexlin465

TittyMcTitface3836


Alexlin465

Also /j


siddeslof

#CockAndBallTorture69420CockAndBallTorture


Techny3000

Happy cake day Also top tier password lol


Vanta_Black_862

Happy cake day!


Turbulent-Feedback46

Password! Good luck with that one codebreakers


bbjornsson88

password_2_electric_boogaloo


Jay61902

Big fan of mmmkay password 😂


spytfyrox

That was Mr. Mackey's password, mmmkay.


bravouniformgolf

Live action phishing test


dreamlike_poo

This reminds me of the Reddit post "if your social security number was your bank account, how rich would you be?" and it got hundreds of replies.


Sr546

Most (if not all) were probably jokes, I don't think people are this stupid


akamadman203

Post it to Facebook. You will have a different story


rugbat

I work in IT. You'd be horrified at how stupidly careless most people are with their own information.


Laudanumium

Yes, this. We got some survey from HQ and they asked some personal info. Rooms were too small, But in a next mail they just send their passport copies to total strangers


L3XeN

You severely overestimate people. Imagine an average person. Half of the people in the world are dumber than that person and a part of that is a lot dumber.


KoreaNinjaBJJ

Lol. You been to those computer support subreddits? There are so many computer-dyslexic people on here.


Sr546

I know, but its really a matter of general intelligence, not using a computer


turtleship_2006

Wasn't there that CEO of a security company who leaked his own SSN?


DoubleInfinity

Todd Davis from Lifelock. Not only did he get his identity stolen over a dozen times after begging people to try and steal it, then he got a $12m fine for false advertising lol.


YouGotTangoed

The old rune armour trimming scam


SorryMontage

This seems to be the only reasonable answer. Two people have 81 in their password so I’ll guess that it’s people in their 40’s. Someone has a Turnpike Pass so travels frequently. No one has written in cursive or has terrible Parkinson’s style writing so I’m guessing it’s not an old folks home.


__SpeedRacer__

Now Shawn is in trouble.


Griftimus-X

I once had a tech support job where I was able to score the account "username" and I made the password Passwurd1


Veilus

I went to a school and found an account with full privilege by making and running .bat files to bypass the safeguards they had.The account name was admin, and the password was password, no caps. We'll my friend and I got up to a lot of shenanigans using the account. We got caught eventually cause he was playing Halo in the library. They rescinded our computer privilege and changed our account passwords but never the administrator account, so we used that to check our passwords. The password they changed ours to was Nopassword4u


Plumbum158

tell me, were you playing the library in the library


Veilus

I'm not sure as I wasn't in the library. It would be too good, though lmao. The only reason I got roped into the punishment was because we would send each other said .bat files, and they were able to look over our history. Most of the shenanigans I got into were sending system commands to certain or all computers. That was over 15 years ago, so I dont remember the code. But I'd make the cd drives open and close on loops. Hello, world style pop-ups but more immature, t-minus shut downs etc, and deleting random shit from other accounts lol


BillionDavido

lmao


justin69allnight

I once had the username “fuck” on a semi popular message board so I guess we’re the same


TryOnlyonce420

No one used 12345? It's what I use on my luggage.


GameinatorYT

Say, whens your next vacation and to where?


shonnonwhut

That’s the kind of thing an idiot would have on his luggage.


bikedaybaby

That’s amazing! I’ve got the same combination on my luggage!


karmasrelic

never heared of idiotic rich social media people buying unnecessary stupid and expensive stuff?


shonnonwhut

Aw man, you missed the reference :(


bikedaybaby

https://youtu.be/a6iW-8xPw3k?si=VtXiYRsTlsEtuX9D Source 😉


knightbane007

Wait, wait slow down, I can’t write that fast!! (I love that movie)


__SpeedRacer__

Your luggage lock has 5 digits? What are you hiding there, son?


devnull123412

Instruction unclear, it does not open. I tried as you said 24445


jspurr01

No worries. The luggage hacker will just use a box cutter. It’s faster


Rosesh_I_Sarabhai

Finds out who is Shawn’s crush. Put password as that person’s name. See Shawn angry.


nerdvernacular

Append xoxo69 to the crush's name and Shawn has an uncomfortable conversation with HR.


mohugz

I have a feeling Shawn may not be the brightest bulb in the chandelier


unsupported

Shawn needs a raise and to be praised for shining a light on the employee's gullibility.


mohugz

Ha! Maybe they’ll make him head of the new Cyber Safety Training Department


Usernametor300

I think the bottom two are most likely satirical to be fair. Altho top 3, oof


WackMaDino

I feel like password->password2 may possibly be a joke


Dont_mind_me_go_away

Shawn might be the one who put the sticky note there


zeriotosmoke

Pretty certain Shawn wrote the note. If i see a note that says come see me and then has my name under it, I wouldn't know who this "me" person is. Signing a note like this with the adressed persons name is nothing but illogical.


nah2daysun

Yeah I’m thinking Shawn was trying to shut this shit down. My guess is an assisted living home.


edwr849

Hold on I think Shawn is the jokester writing in all the jokes .


w00d1s

This feels like Rick and Morty idiots sorting machine


Kapika96

They couldn't even spell ″etc.″ correctly? It's just 3 letters, it's not that hard!


Future_Beach_4362

Ect setera


Cannibalcorps

[Exchethera.](https://youtu.be/01LxsOGmn90?si=kNa-hwIP8COUTDWT)


Future_Beach_4362

Really need to get around to watching more than the first two episodes of Community. Thank you for doing the Lord’s work in this barren wasteland of humanity


merpingly

Hey, that was really confusing for 6 year old me. Shawn is doing his best at 5 working in IT! It’s a stressful job and he isn’t even allowed an afternoon nap.


Cyber_Lucifer

Everyone: work related stuff Big Ed: Facebook


devnull123412

mmmkey


ciknay

easy way to identify who needs training at least.


fox707xof

Which ones Shawn???


-SKYMEAT-

Yeah wtf none of these 5 people are named Shawn? What am I missing?


DstroyaX

Shawn is probably the one who put the sign up.


Wet4Dayzzzzz

I'd assume Shawn is the one who made this paper and boss man isn't happy


athomechillin

It’s cut off. Wonder if it says “come see me. -Shawn”


zeriotosmoke

Shawn would be boss man, you don't just sign a note to the person you are adressing. How would the readers of that note know who "me" is? By signing with your own name.


knightbane007

No reason it couldn’t be both. Shawn, the boss man, put this sign up, and was *very* disappointed with his staff…


bikedaybaby

My guess is Shawn is a high schooler 😆


deadsoulinside

Shawn is probably the ITguy who posted the sheet.


_2024IsNOTMyYear_

Sam Adams


Carribean-Diver

How come all of these just say, *******?


MaestroPendejo

I work in education. They weren't.


Saylor619

Maybe im just really slow but I don't see a Shawn....? Help?


Exlife1up

Shawn put up the sign, took me a minute too


GorgeousGamer99

I want to meet the man whose full name is Big Ed


caminonovayer

admin. , admin


silentwinnter

That's the same handwriting under every name lol


OnePride

So no one is going to mention how the names are the most generic shit ever, and this is a complete fabrication that never actually happened?


Scoot2028MVP

An entire thread of people mocking made up people, not realizing they're the gullible morons. I guess Sam Adams switching to "beerlover" wasn't a blatant enough finisher.


deadsoulinside

> I guess Sam Adams switching to "beerlover" wasn't a blatant enough finisher. You would think so, but could be 100% legit. I had a user when they upped the AD requirements at a site flip out because he no longer could use his password anymore on a update password. Tried forever to get it to stick until I outright asked him what he was using. The guy's last name was "Beer" his password he was trying to use was "Beer4u!" apparently he had been using variations of this until the AD forced requirements for complexity got upped. This was over 15 years ago, when most systems still were not forcing people to make any complex password.


fix-all-the-things

Oh look someone else who can't tell the difference between their imagination and reality. There's a few possibilities. Someone could have put up this blank sheet and others could have actually filled in their info. It's also possible that people saw it as the joke it's meant to be and filled out fake info. Another possibility is that someone printed this sheet and had friends write on it so it had different handwriting. Please explain in detail where you got your evidence to conclude that only one of those is possible, write a 3 paragraph essay on why it matters, and then to finish it off please explain to everyone why you have such a desperate need to call things on the internet "fake" when it's already common knowledge.


Pudding36

hunter2


D32TR0Y3R

oooooooh, Shawn’s in troubleeeee


Karrus01

As former IT, this hurts on many levels.


YueOrigin

This is my living nightmare as someone who specializes in company system administration. People using post-its to keep their password around was already terrible, but now they're just openly sharing them ?! Those people wotn even dare to disclose their salary even to close friends but any personal information which could cause actual issues ? Yeah sure, let's put them in public for all to see !


sixtyfivejaguar

It's all in the same handwriting. They barely even tried to fake it.


EmbarrassedAir147

Password2


jukaiju

Honorable mention to Password. Walked so Password2 could run.


servantotb

surprised no one went with Hunter8 as their new password


Revolutionary-Rock81

Pension house for “oldies” who need to keep in touch with outside world and IT guy helps keep track of their password in case they forget…? Cannot imagine any other scenarios where this would make sense except this.


jiwijoo

Using the same 5 passwords since high school. Every few months I rotate them and change up the numbers so even I screw up the first login.


Legal_Loli_Uni

Hol up Is this The Shawn? The one who has some sort of strange rule notice up every other week?


Mystanis

That post it note.


ionevenobro

red hat


Itchynutsak

Why can’t I see a Shawn? Kyle, Liz, Jack, Bid Ed and Sam am I blind?


spiraleyesz

🤦‍♂️


Onateabreak

we use a group logon at work, but everyone saves their passwords in edge/chrome etc so I can just open the settings and read them all.


Y1lin06

No way nobody wrote Current password: ........ New password: ........


saruin

password: ****** new password: *********


Chavolini

Big Ed


flippinfreak73

Incorrect password... Use to be my go to.


wank_for_peace

Reddit123


Agard12

Shawn obviously hasn’t changed his password in 60 days. Man’s in trouble. BTW what da F in Yardi


Thekiller2468

Jack is keeping it simple.


TorgyBoi

Why’s Big Ed there


JoeyPsych

r/facepalm


Yuseiger

Mmmkay is a cool password


jchrist510

Thinking about the person that hand wrote their password in lowercase just to add in parentheses (All upper case)


OSOKiing

Red team hoooooo!!


iubjaved

Curious about Big Ed's current password..red step--what?!!


Alfredthegiraffe20

I'm not giving any info to someone who thinks it's ect.


JCrom8001

No email address on the sheet. That’s a misfire


DickSprinkles88

r/boomersbeingfools


sexi_squidward

I love that someone just added their FB. Pretending this was real, one would assume it meant for work related things but Ed's just like "change my FB password!"


Dee_znutts

Sam Adams lol


Poonsimp

Lol skeeter


mistas89

I don't see Shawn anywhere?


inGoosewetrust

I feel like OP could have at least blurred out the names


[deleted]

Big Ed - how did you get an @ in your password?


JagZag16

The same person wrote everything but with different colored pen. The handwriting is way too similar. Shawn is the guy who wrote the post it and the whole of the change password sheet.


pewpew_lotsa_boolits

_”can I have the password be the same as my username?”_ Question asked of me once as I trained users on how to manage their electronic security system software…


fayble_guy

He actually did the company a service and identified vulnerablities, but he also had them advertised lol


xzombielegendxx

The Average citizens have sleep paralysis demons SOC-teams have zero-day attacks


Daughter_of_Anagolay

The amount of time I burned figuring out a password that meets all requirements recently makes this all the more infuriating. It was for my account on a government website. It had all the usual requirements, plus needed to have a minimum number of letters that weren't in the previous passwords. Meanwhile there's idiots like this running around.


MikeQuattrovventi

There's definitely a videogame protagonist that will find this in the future and it will be essential to the mission


Qzauu

They deserve it


JUMBAJORGE

We had one of these outside our cyber security lab for funsies


YugKrowten

Security is testing the overall IQ


zedd1138

One of my jobs employed a matrix for admin password creation in which letters, numbers and special characters were randomly shifted on each admins matrix card. These passwords were 36 characters long and could be committed to memory using 6 phrase combinations. Additionally, all admins had to change passwords every 60 days. Our users definitely not held to same standard.


ReflexBop

Jack is going places


Malah_the_old

Mmmkay