Why is changing your password regularly not a good idea?

One of the most enduring pieces of password security knowledge is that changing your passwords regularly increases security. At least, that's what IT teams around the world have been pushing on people for decades.

However, that advice has always been met with resistance. Many in the security industry argue that this leads to passwords that are easy to remember. Now, research has proven this theory, demonstrating that frequently changing passwords can lead to security problems.

Changing passwords frequently leads to poor security

Many of us find mandatory password changes every 4, 6, or 8 weeks intimidating. One IT group promotes the idea that changing your password will make any security breaches irrelevant, since everyone will use new passwords.

Why is changing your password regularly not a good idea?

In practice, this leads to weaknesses in password creation. Instead of creating strong, unique, and hard-to-guess passwords, most people choose passwords that are easy to remember with small, repeated parts.

For example, a strong 16-character password might be "hS'9{yX?Fzu#=_:R", which includes a mix of uppercase and lowercase letters, numbers, and symbols. It's hard to remember, but over time, you'll get the hang of it. Whereas if you had to change your password every month, you wouldn't have time to remember it. So people started using easier-to-remember phrases with small, repeated parts.

  • January: difficultpassword1
  • February: d1fficultpassword2
  • March: d1ff1cultp4ssword3
  • V,v...

Choose strong, unique passwords (or use a password manager)

The UK's National Cyber ​​Security Centre has recommended against using regular passwords since 2015, and now, in 2024, the National Standards Institute is following suit.

Their new advice recommends passwords expire every 365 days, significantly changing the timeframe — and increasing security.

At the same time, NIST is also updating its messaging on password length and strength. In some cases, password creation rules limit users to 12 characters or prevent certain symbols from being used. NIST now recommends that all passwords:

  • Minimum 15 characters
  • Maximum 64 characters
  • Includes all ASCII characters, whitespace characters, and Unicode characters

These changes mean more password entry fields will allow for stronger and more memorable passphrases, while overall password strength is also increased.

Of course, any organization that cares about password security should enable the use of a password manager. There are additional security considerations involved with using a password manager, such as local data storage, zero-knowledge encryption, etc., but it's a best practice to protect all of your accounts with strong passwords.

Leave a Comment

How to Fix Microsoft Teams Time Limit Error

How to Fix Microsoft Teams Time Limit Error

Tired of Microsoft Teams "Time Limit" Error crashing your meetings? Follow our proven, step-by-step guide to fix it quickly—update app, clear cache, and more for seamless collaboration. Works on latest versions!

How to Fix Microsoft Teams Layout Error After Update

How to Fix Microsoft Teams Layout Error After Update

Facing Microsoft Teams Layout Error after the latest update? Discover proven step-by-step fixes to resolve layout glitches, restore perfect UI, and boost productivity fast. No tech skills needed!

How to Fix Microsoft Teams Error K Security

How to Fix Microsoft Teams Error K Security

Struggling with Microsoft Teams "Error K" Security? Follow our step-by-step guide to fix it quickly—no tech expertise needed. Get back to seamless collaboration today!

How to Fix Microsoft Teams Update Error 0x80070002

How to Fix Microsoft Teams Update Error 0x80070002

Struggling with Microsoft Teams Update Error 0x80070002? Discover step-by-step fixes to resolve it quickly. Clear cache, repair files, and get back to seamless updates today!

Solving Microsoft Teams Web Error Browser Login

Solving Microsoft Teams Web Error Browser Login

Tired of Microsoft Teams "Web Error" blocking your browser login? Follow our step-by-step guide with proven fixes to resolve Teams web login issues fast and securely. Get back to work!

How to Fix Microsoft Teams Error O Offline

How to Fix Microsoft Teams Error O Offline

Stuck with Microsoft Teams "Error O" Offline? Discover proven, step-by-step fixes to get back online fast. Clear cache, restart, and more – no tech skills needed!

Where is Microsoft Teams in Outlook? Locating the Missing Icon

Where is Microsoft Teams in Outlook? Locating the Missing Icon

Frustrated by the missing Microsoft Teams icon in Outlook? Learn exactly where to find it, why it disappears, and proven steps to restore it for effortless meetings. Updated for the latest versions!

Solving Microsoft Teams Windows 10 Error Login Issues

Solving Microsoft Teams Windows 10 Error Login Issues

Struggling with Microsoft Teams "Windows 10 Error" login issues? Get instant fixes for cache clears, updates, and more. Step-by-step solutions to solve Microsoft Teams login error on Windows 10 fast and frustration-free.

Solving Microsoft Teams Website Error Tab Not Loading

Solving Microsoft Teams Website Error Tab Not Loading

Tired of the frustrating Microsoft Teams "Website Error" where tabs won’t load? Get step-by-step fixes to resolve it quickly and boost your productivity. Essential troubleshooting for seamless Teams experience.

How to Fix Microsoft Teams Web Error 503 Service Unavailable

How to Fix Microsoft Teams Web Error 503 Service Unavailable

Tired of the frustrating Microsoft Teams "Web Error" 503 Service Unavailable? Discover proven, step-by-step fixes for Teams 503 error on web. Get back online fast with our expert guide. Works on all browsers!

How to Fix Microsoft Teams Win 7 Error Compatibility

How to Fix Microsoft Teams Win 7 Error Compatibility

Struggling with Microsoft Teams "Win 7 Error" compatibility? Discover step-by-step fixes to restore seamless video calls and chats on unsupported Windows versions. Quick, reliable solutions inside!

Troubleshooting Microsoft Teams Breakout Rooms License Errors

Troubleshooting Microsoft Teams Breakout Rooms License Errors

Master troubleshooting Microsoft Teams Breakout Rooms license errors with this step-by-step guide. Quick fixes for common license issues, admin checks, and prevention tips to get your meetings running smoothly.

How to Fix Microsoft Teams Version History Error

How to Fix Microsoft Teams Version History Error

Struggling with Microsoft Teams "Version History" Error? Discover proven, step-by-step fixes to restore access instantly. Clear cache, update Teams, and more—no tech skills needed!

Solving Microsoft Teams Joining Error: Meeting ID Not Found

Solving Microsoft Teams Joining Error: Meeting ID Not Found

Tired of the frustrating Microsoft Teams Joining Error: Meeting ID Not Found? Get step-by-step fixes to rejoin meetings fast. Updated with the latest Teams patches for seamless collaboration. Solve it now!

Troubleshooting Microsoft Teams Video Error Green Screen

Troubleshooting Microsoft Teams Video Error Green Screen

Struggling with Microsoft Teams "Video Error" green screen? Discover proven, step-by-step troubleshooting fixes for seamless video calls. Quick solutions inside!