New tool teaches you how to set stronger passwords

Securing your accounts just got a whole lot easier.
By
Freia Lobo
 on 
New tool teaches you how to set stronger passwords
Credit: Shutterstock / Rawpixel.com

Securing your accounts just got a whole lot easier.

Researchers from Carnegie Mellon University's CyLab Usable Privacy and Security Laboratory and the University of Chicago have developed a new password meter that educates people on how they can make their password stronger. The project is open source and can be added on to existing services.

This is particularly important in a time when passwords are easier than ever to crack. While passwords themselves can be bypassed, it's still important to keep passwords strong to protect against brute force attacks, which is when hackers try guessing your password over and over until they're successful.

The password meter aims to motivate people to use better passwords by educating them about why their passwords are weak and providing suggestions about what they can do to make them stronger.

The idea of a password meter is not completely new, many websites have begun offering feedback about password strength. Here's Google's for instance, with the password "mashable2017":

Mashable Image
Credit: google

Despite being labeled as "strong" by Google, the same password basically gets a "try again" with some context from this new tool.

Mashable Light Speed
Want more out-of-this world tech, space and science stories?
Sign up for Mashable's weekly Light Speed newsletter.
By clicking Sign Me Up, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up!

The meter states: "Don't use words used on Wikipedia," "avoid using dates like 2017," and also provides a better option. Each of the reasons can be expanded to learn more.

Mashable Image
Credit: CMU

If you use "password," for example, the meter responds with "Your password must not be an extremely common password."

Mashable Image
Credit: CMU

I also dropped a password generated by LastPass, a popular password manager, in the new password meter and not surprisingly, the tool liked it. But it also gave me some important advice: "Make sure you use it only for this account."

Mashable Image
Credit: cmu

The meter uses a neural network to scan a large database of existing passwords and identify trends. Then it checks the user's entered password against these to figure out if it's something attackers may guess.

"For example, if you change Es to 3s in your password, that’s not going to fool an attacker. The meter will explain about how prevalent that substitution is and offer advice on what to do instead,” said Blase Ur, the study's lead author, in a statement.

The site also features a guide for creating strong passwords:

Mashable Image
Credit: cmu

The researchers found that providing data-driven feedback made a huge difference in security as compared to just labelling the passwords as weak or strong. You can try the demo for the service here.

Topics Cybersecurity

Mashable Image
Freia Lobo

Freia Lobo wrote about Tech News for Mashable in NYC. You can follow her on twitter at @freialobo


Recommended For You
Beef up your home DIY arsenal with this Dewalt tool kit for under $100
Dewalt tool kit on abstract blue and purple background


Shop power tool sets from Home Depot, get a free tool up to $219 in value
Tools from Ridgid, Dewalt, and Milwaukee appear on an orange abstract background.

The digital tool protecting Ukrainian architecture from war
a woman standing in front of a composite of a digitized house

Perplexity's new Deep Research tool is powered by DeepSeek R1
Close-up of the Perplexity app on a smartphone

Trending on Mashable
NYT Connections hints today: Clues, answers for March 29, 2025
Connections game on a smartphone

NYT Strands hints, answers for March 29
A game being played on a smartphone.


Wordle today: Answer, hints for March 29, 2025
Wordle game on a smartphone

Elon Musk makes request to Reddit CEO to take down posts he didn't like
Elon Musk
The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!