Ad-free. Influence-free. Powered by consumers.
Skip to Main ContentSuggested Searches
Suggested Searches
Product Ratings
Resources
CHAT WITH AskCR
Resources
All Products A-ZThe payment for your account couldn't be processed or you've canceled your account with us.
Re-activateDon’t have an account?
My account
Other Membership Benefits:
While Facebook is rolling out the new privacy controls it announced yesterday, it ought to fix the gaping security flaw in its password system that I reported here two weeks ago, which lets users adopt extremely weak passwords like "circus" and "better."
Besides the above two words, which can be easily cracked by password-cracking software, Facebook still lets people use 8 more common words that I reported here two weeks ago. Note: Facebook itself rates all of these as "weak" but inexplicably still lets you use them:
So what's the risk in using such words? Once someone cracks them, the next thing you know, all your Facebook friends are getting messages from you saying you've been robbed in London and need money wired immediately.
Still, two weeks after I revealed this significant flaw in Facebook's password system, they haven't fixed it.
Why? Is the hole too small to be worth patching?
No, and the hole is bigger than I initially thought. Turns out there are more extremely weak passwords that Facebook allows that could too easily get your Facebook account hijacked. Here are 10 of them:
That makes 20 in all.
How many more do we need to know before Facebook fixes this security problem?
Let me know what you think. Meanwhile, follow these tips to secure your Facebook account.
—Jeff Fox
—Jeffrey Fox
Build & Buy Car Buying Service
Save thousands off MSRP with upfront dealer pricing information and a transparent car buying experience.
Get Ratings on the go and compare
while you shop