Analysis Of The RockYou Leak

This is yet another old, but very interesting leak. RockYou was breached back in December 2009 and a total of 32.603.388 passwords was released. There have been made some detailed reports based on this leak. Not only was the leak one of the largest in history, but it also serves as a lesson to companies how not to handle a breach.

No passwords were cracked, all passwords were stored in clear text.

The Results

Length distribution
 
Average password length: 7,882864

Character distribution
 

Unique character distribution


Contained in common wordlists
 

Top 30 most common passwords


Notes
I did not provide a top 30 longest passwords list this time as the list just would have contained a lot of 255 character long HTML garbage. However, I did remove the data prior to calculating the average password length.

Comments

Popular posts from this blog

.NET Compression Libraries Benchmark

Reducing the size of self-contained .NET Core applications

Convex polygon based collision detection