10.7 C
London
Wednesday, May 6, 2026

How to create secure passwords – it might be time to switch to passkey

How to create secure passwords – it might be time to switch to passkey,

From online banking to social media accounts, many of us now juggle dozens of different passwords on a daily basis.

But getting lazy with your logins could create a cybersecurity nightmare.

Experts have now revealed the best way to create truly secure passwords that don’t expose you to criminals.

And they say that you should never reuse an old password or write down your logins.

In fact, the National Cyber Security Centre (NCSC), an arm of GCHQ, now says it might be time to ditch your passwords altogether.

The NCSC announced that it was ‘overhauling decades of practice’ by advising people to stop relying on passwords and start using passkeys instead.

Jake Moore, global cybersecurity advisor at ESET, told the Daily Mail: ‘They are truly paving the way to remove passwords which remain insecure.’

So, here are the top tips for how you can make the most secure passwords to stay safe online.

Experts have revealed the best way to make your passwords secure, and they say you should never write your logins down

Experts have revealed the best way to make your passwords secure, and they say you should never write your logins down 

Use a unique password

With so many different passwords to remember, it can be tempting to use the same password for multiple accounts.

However, this is one of the worst decisions you can make for your online security.

Mr Moore says: ‘When people reuse the same password across multiple sites, it means that if one password is compromised in a data leak from one platform, cybercriminals could use the same password and username across other sites and gain entry.’

That means, even if the site you use for your online banking is very secure, you could still be compromised if a less secure site you use is hacked.

Sharing passwords between multiple accounts makes it easier for criminals to take over your digital presence from one small weakness.

Experts also warn against only changing your passwords very slightly, such as altering ‘Password’ to ‘Password1’.

While this might feel more secure, hackers won’t have any trouble adding a few extra letters or numbers to a common password.

This comes as the National Cyber Security Centre encourages people to ditch passwords altogether and use more secure passkeys instead. Pictured: The Government Communications Headquarters (GCHQ)

This comes as the National Cyber Security Centre encourages people to ditch passwords altogether and use more secure passkeys instead. Pictured: The Government Communications Headquarters (GCHQ)

How to keep your passwords secure

  • Use a unique password for every site
  • Don’t just change one letter or number
  • Don’t include personal information
  • Use a longer passphrase
  • Don’t write your passwords down
  • Consider using a passkey instead  

‘Criminals also have access to software that can alter simple passwords such as the number at the end, so it’s also advisable not to increase any given number or year as they know this is popular,’ says Mr Moore.

Don’t use personal information

A common mistake people make with their passwords is basing them on personal information.

This might make it easier to remember, but it only makes it easier for a determined hacker to guess.

Mr Moore says: ‘This type of information may seem private, but it’s often easily located and linked online.

‘If people use any personal information such as birthdays, football teams or meaningful years in their passwords, they are effectively breached.’

You should be especially careful about using information that could be easily found online, such as a pet’s name or the date of an anniversary.

Use a long password

One of the best ways to make your password more secure is simply to make it longer and more complex.

Tech experts at Which? recommend using a passphrase rather than a simple one–word password.

Which? says: ‘Even if a website encrypts your password, single words found in the dictionary can be easily cracked.

‘Hackers use lists of the encrypted version of the most commonly used passwords.’

Instead, use a random or nonsensical combination of words, such as ‘blue dogs walk backwards’.

Adding special characters will make this even harder for hackers to guess, but be thoughtful about how you use them.

Which? says: ‘It’s tempting to replace letters of the alphabet with numbers and symbols that look similar so that ‘password’ becomes “p@$w0rd”. But don’t do this. Hackers know that trick too.’

Don’t write your passwords down

Instead of writing your passwords down, security experts say you should use a password manager, such as Google Password, to keep your logins in one place

Instead of writing your passwords down, security experts say you should use a password manager, such as Google Password, to keep your logins in one place 

Keeping track of all your complex passwords can be difficult, and it might seem like a good idea to jot them down so you don’t forget.

Which? says: ‘You might live alone, or think you can trust the people you live with, but you might be burgled.

‘An intruder could not only steal your laptop, they could also get away with your precious passwords, too.’

If you put your passwords on paper, the chances of them being stolen are low, but it creates an unnecessary danger that’s easily avoided.

Instead, it is much better to keep all your login details in one place with an online password manager.

Services like Bitwarden, Dashlane, or Google Password keep your passwords encrypted and secure behind one secure password.

You can also set up two–factor authentication with your password manager to keep your details extra safe.

Ditch the password and use a passkey

Passkeys, which work like digital stamps, are now being adopted by more companies as a secure alternative to passwords. Paypal was one of the latest sites to start using the new technology

Passkeys, which work like digital stamps, are now being adopted by more companies as a secure alternative to passwords. Paypal was one of the latest sites to start using the new technology 

The most common passwords

  1. 123456
  2. 123456789
  3. 111111
  4. password
  5. qwerty
  6. abc123
  7. 12345678
  8. password1
  9. 1234567
  10. 123123

For the ultimate cybersecurity upgrade, experts recommend getting rid of your complicated passwords and using a passkey instead.

Passkeys, likened to ‘digital stamps’, do not need to be remembered as they are created and managed by software on the device.

This means that they are quicker to use than a password and more secure than even the longest passphrase.

When a user first logs in to a device, the system sends a digital key to specific devices.

For many, that means using biometric data – such as a fingerprint or facial recognition – or their phone’s PIN to create and authenticate their passkey.

The key remains stored on the device and cannot be easily intercepted or stolen – with third parties unable to access accounts using other devices.

Even if a website is breached, hackers will only be able to access the ‘public keys’, which are useless by themselves.

‘Using Passkeys across devices makes it easy for people to sign into their accounts and removes the challenge of having to remember multiple passwords or using two or three passwords for all accounts,’ says Mr Moore.

‘It also removes one–time passcodes, which is often something people stumble with. Combined with the device’s biometric authentication passkeys, it makes it extremely quick to enter an account.’

Read More

Will we EVER learn? The most common passwords are revealed – with ‘123456’ topping the list again

article image

Passkeys are so secure that they are now being recommended by the NCSS as the preferred way of keeping your account safe.

Jonathon Ellison, the director for national resilience at the NCSC, said passkeys provide ‘a user–friendly alternative which provide stronger overall resilience’.

He said: ‘As we aim to accelerate the UK’s cyber defences at scale, moving to passkeys is something all of us can do to improve the security of everyday digital services and be prepared for modern and future cyber threats.’

The only issue is that they are not used by all websites, but adoption is growing rapidly, with Apple, Google, Microsoft, PayPal and eBay all making passkeys available as a login option.

Experts have revealed the best way to create truly secure passwords that don’t expose you to criminals.

Hot this week

Diana’s ex-hairdresser condemns ‘evil’ comments about Kate’s hair

Princess Diana's former hairdresser has condemned 'nasty' comments made about the Princess of Wales 's hair - as she stepped out with her newly blonde tresses.

The unusual breakfast request Princess Lilibet asks Meghan Markle for

Meghan Markle revealed her children's favourite meals and that she 'doesn't like baking' on the second season of her lifestyle show With Love, Meghan.

Experts reveal how many tins of tuna is safe to eat a week

The NHS advises people to eat at least two portions of fish a week, yet a recent investigation revealed toxic metals, including mercury, could be lurking in cans of tinned tuna sold in the UK.

Some people DO see ghosts – and medics say there’s an explanation

An astonishing third of people in the UK and almost half of Americans say they believe in ghosts, spirits and other types of paranormal activity.

Prince Philip’s nickname only his nearest and dearest could call him

From 'Lillibet' to 'Grandpa Wales', members of the Royal Family are known to go by many nicknames.

Labour’s ‘Trojan Horse’ plot to line up Burnham to replace Starmer

Preparations are in place for a sympathetic north west Labour MP to step aside as soon as next week to open up a potential route back to Westminster for the Great Manchester mayor.

Revealed: THIRTY Green candidates probed over anti-Semitism

The shocking figure makes a mockery of party claims that only a 'handful' of those standing in Thursday's local elections had made hateful comments - and that all had been 'dealt with'.

Orlando Bloom steps out with scantily-clad Katy Perry lookalike in NYC

The Lord of the Rings alum is 22 years older than Meredith Duxbury, who vamped it up in a black-lace dress boosting her cleavage

Moment teacher who ‘sexually assaulted baby’ says, ‘I killed him’

Jamie Varley, 37, was said have blurted out the comment after racing into the hospital with 13-month-old Preston Davey limp in his arms.

Prolific parcel thief faces prison after victim tracks stolen items

Camila Martins, from Westminster in London, was left perplexed after receiving a call from a DHL delivery driver on March 12 asking where the package she had left for collection was.

Moment teacher who ‘sexually assaulted baby’ says, ‘I killed him’

Jamie Varley, 37, was said have blurted out the comment after racing into the hospital with 13-month-old Preston Davey limp in his arms.

Wealthy restaurateur, 52, slays his family in horrific murder-suicide

Matthew Mitchell, 52, a wealthy Texas restauranteur and former pharmaceutical CEO, murdered his pregnant wife and their two young children in a horror murder-suicide.

Orlando Bloom steps out with scantily-clad Katy Perry lookalike in NYC

The Lord of the Rings alum is 22 years older than Meredith Duxbury, who vamped it up in a black-lace dress boosting her cleavage
spot_img

Related Articles

Popular Categories

spot_imgspot_img