Links http://arstechnica.com/security/2012/08/passwords-under-assault/ http://erratasec.blogspot.com/2012/08/the-deal-with-passwords.html http://erratasec.blogspot.com/2012/08/common-misconceptions-of-password.html http://boingboing.net/2012/08/21/password-cracking-goes-into-hy.html http://twit.tv/sn http://ob-security.info/?p=546 https://m.xkcd.com/792/ http://m.xkcd.com/936/ http://imgs.xkcd.com/comics/password_strength.png http://erratasec.blogspot.com/2012/08/common-misconceptions-of-password.html https://twitter.com/thorsheim/status/238368167058096129 http://securitynirvana.blogspot.com/2010/02/never-trust-password-meters.html http://securitynirvana.blogspot.com/2010/11/revisiting-password-meters.html http://erratasec.blogspot.com/2012/08/the-deal-with-passwords.html http://twit.tv/sn https://xkcd.com/538/ Additional links Bruce weighs in http://www.schneier.com/blog/archives/2012/09/recent_developm_1.html => http://www.schneier.com/blog/archives/2007/01/choosing_secure.html (2007) & http://www.lightbluetouchpaper.org/2012/09/03/password-cracking-part-i-how-much-has-cracking-improved/ & http://www.lightbluetouchpaper.org/2012/09/03/password-cracking-part-i-how-much-has-cracking-improved/   http://www.schneier.com/blog/archives/2012/09/analysis_of_pin.html => http://www.datagenetics.com/blog/september32012/       And Password Frequency Analysis « Jonathan Arbib arbib.it/tag/password-frequency-analysis/ Feb 7, 2009 – Tag: Password Frequency Analysis ... then ran the list of recovered passwords through an analysis program, and here is what he came out with.   Reusable Security: Frequency Analysis for Stronger Passwords reusablesec.blogspot.com/2009/.../frequency-analysis-for-stronger.ht... Jun 1, 2009 – Frequency Analysis for Stronger Passwords. As a commenter pointed out in my last post, the previous frequency analysis was based on a set of   Frequency analysis of passwords stolen from Gawker - Spiceworks community.spiceworks.com/.../122082-frequency-analysis-of-passw... Dec 15, 2010 – http://www.impactlab.net/2010/12/14/the-top-50-gawker-media-passwords/ 1, 2, 3­, 4, 5? That's amazing! I've got the same comb... | 12 replies ... Improving Brute force Attacks with Frequency Analysis ... averagesecurityguy.info/.../improving-brute-force-attacks-with-frequ... Feb 7, 2011 – In all three files the combined set found over 70% of the passwords. It looks like the frequency analysis could be useful in improving brute force ...