When choosing passwords, it is important to choose complex passwords that are diificult for humans and computers to guess.
There are several approaches to creating secure passwords. In this post, a summary of the suggested password components to enhance your online security are provided.
Minimum password length: 18 characters
Passwords should contain:
- Include Symbols
- Include Numbers
- Include Lowercase Characters
- Include Uppercase Characters
Tips for Maintaining Password Security
- Use a password manager - these tools can manage all of your passwords, assist in generating secure passwords, and provide awareness of compromises of your username or password online.
- Regularly Update Passwords: Absolutely change passwords when you learn of any compromise of sites where you have accounts. Also, it is a good idea to set a schedule for changing passwords. Using a password manager can greatly reduce the effort in changing passwords more frequently.
- Be Wary of Phishing Scams: Do not share your passwords through email or messages. Always verify the source before entering your credentials.
It is highly recommended that you enable Two-Factor Authentication (2FA): 2FA on all sites, but particularly in sites that contain your financial and personally identifiable information (that includes social media). Multifactor authentication adds an extra layer of security by requiring a second form of verification.
Common Password Mistakes to Avoid
- Using Common Passwords: Passwords like “123456,” “password,” and “qwerty” which are easily guessable.
- Recycling / Reusing Passwords: Using the same password across multiple sites increases your risk if one site is breached.
- Writing Passwords Down: Storing passwords in plain sight, like on sticky notes, can lead to unauthorized access.
- Public Information: Using phrases that contain publicly available personal information or things you shared on social media.
This post is presented by the GW IT Cybersecurity Risk and Assurance team.
#SecuringGW is a shared responsibility, so if you see something, say something. Report suspicious digital activities, including phishing emails, to abuse[@]gwu.edu..
IT Support Questions? For IT support, please contact the Information Technology Support Center at 202-994-GWIT (4948), ithelp@gwu.edu, or visit ithelp.gwu.edu.
