Elude hackers with password security


Associated Press

NEW YORK

Details from the Department of Justice indictment of Russian hackers on Wednesday show that many people are still not taking routine precautions to safeguard their email accounts – and hackers are exploiting that.

The Russian hackers didn’t have to work very hard to break into people’s email accounts, even those belonging to government officials or powerful executives. Here’s a look at a few simple ways to help safeguard your email account from hackers.

DON’T REUSE PASSWORDS

Many online break-ins result when people have reused a password across, say, their email, social and financial accounts. If it’s compromised at any one of those services, the others are suddenly vulnerable.

One simple way to avoid this problem is to start with a base password you can remember, and then add on letters and numbers that reference where you’re using it. If your base password is “greatsurfer2017” (which isn’t particularly secure; more on that in a moment), you could make “greatsurfer2017Y” your Yahoo password, and “greatsurfer2017G” your Google password.

PICK A STRONGER PASSWORD

You can make things harder for attackers by making your base password stronger. The more complicated and lengthy a password is, the harder it will be for hackers to guess.

The downside: Tougher passwords are also harder to remember. But there are some ways around that.

Don’t include your kids’ names, birthdays or references to any other personal details. Hackers routinely troll Facebook and Twitter for clues to passwords. Obvious and default pass- words such as “Password123” are also bad, as are words commonly found in dictionaries, as these are used in programs hackers have to automate guesses.

You can make your own strong passwords with randomly capitalized nonsense words interspersed with numbers and characters – like, say, “giLLy31!florp.” (Just don’t use that one now that it’s appeared in this story.) So long as you’re making up the words yourself, these are difficult for hackers to crack – and they’re easier to remember than you might think.

HAVE YOUR PASSWORDS MANAGED FOR YOU

Of course, you can make things easier on yourself by using a password-manager service such as LastPass or DashLane, which keep track of multiple complex passwords for you. Some web browsers such as Apple’s Safari and Google’s Chrome also have built-in password managers; these work if you switch devices, but not if you switch browsers.

After you create a strong password for your password manager, it can create random passwords for your other accounts – and will remember them for you as well.