The Exchange

Cracking Your PIN Code: Easy as 1-2-3-4

Yahoo! editors have selected this article as a favorite of 2012. It first appeared on Yahoo! Finance in September and was one of the most popular stories of the month. Readers joked about people who use the most common PIN codes, and shared how they came up with their own. "My pin number is my post office box number from my time in the Air Force 30 years ago on a base that no longer exists," wrote user Nick. "Feel free to hack that."

If you lost your ATM card on the street, how easy would it be for someone to correctly guess your PIN and proceed to clean out your savings account? Quite easy, according to data scientist Nick Berry, founder of Data Genetics, a Seattle technology consultancy.

Berry analyzed passwords from previously released and exposed tables and security breaches, filtering the results to just those that were exactly four digits long [0-9]. There are 10,000 possible combinations that the digits 0-9 can be arranged into to form a four-digit code. Berry analyzed those to find which are the least and most predictable. He speculates that, if users select a four-digit password for an online account or other web site, it's not a stretch to use the same number for their four-digit bank PIN codes.

What he found, he says, was a "staggering lack of imagination" when it comes to selecting passwords. Nearly 11% of the 3.4 million four-digit passwords he analyzed were 1234. The second most popular PIN in is 1111 (6% of passwords), followed by 0000 (2%). (Last year SplashData compiled a list of the most common numerical and word-based passwords and found that "password" and "123456" topped the list.)


Berry says a whopping 26.83% of all passwords could be guessed by attempting just 20 combinations of four-digit numbers (see first table). "It's amazing how predictable people are," he says.

We don't like hard-to-remember numbers and "no one thinks their wallet will get stolen," Berry says.

Days, Months, Years

Many of the commonly used passwords are, of course, dates: birthdays, anniversaries, year of birth, etc. Indeed, using a year, starting with 19__, helps people remember their code, but it also increases its predictability, Berry says. His analysis shows that every single 19__ combination be found in the top 20% of the dataset.

"People use years, date of birth — it's a monumentally stupid thing to do because, if you lose your wallet, your driver's license is in there. If someone finds it, they've got the date of birth on there. At least use a parent's date of birth [as a password]," says Berry.
Somewhat intriguing was #22 on the most common password list: 2580. It seems random, but if you look at a telephone keypad (or ATM keypad), you'll see those numbers are straight down the middle — yet another sign that we're uncreative and lazy password makers.

The Least Predictable Password

The least-used PIN is 8068, Berry found, with just 25 occurrences in the 3.4 million set, which equates to 0.000744%. (See the second table for the least popular passwords.) Why this set of numbers? Berry guesses, "It's not a repeating pattern, it's not a birthday, it's not the year Columbus discovered America, it's not 1776." At a certain point, these numbers at the bottom of the list are all kind of "the lowest of the low, they're all noise," he says.

A few other interesting tidbits from Berry:

-The most popular PIN code (1234) is used more than the lowest 4,200 codes combined.
- People have even less imagination in choosing five-digit passwords — 28% use 12345.
- The fourth most popular seven-digit password is 8675309, inspired by the Tommy Tutone song.
-People love using couplets for their PINs: 4545, 1313, etc. And for some reason, they don't like using pairs of numbers that have larger numerical gaps between them. Combinations like 45 and 67 occur much more frequently than 29 and 37.
- The 17th most common 10-digit password is 3141592654 (for those of you who are not math nerds, those are the first digits of Pi).

Loading...

Editor’s note:Yahoo Philippines encourages responsible comments that add dimension to the discussion. No bashing or hate speech, please. You can express your opinion without slamming others or making derogatory remarks.

  • Billionaire finds wreck of WWII ship in Phl
    Billionaire finds wreck of WWII ship in Phl

    Microsoft co-founder Paul Allen says he has found the Japanese Navy’s biggest warship at the bottom of the sea in the Philippines, 70 years after US forces sank it. Allen posted a photo on Twitter on Tuesday of the World War II battleship Musashi’s rusty bow, which bore the Japanese empire’s Chrysanthemum seal. The American billionaire, who has also pursued space exploration, said his luxury yacht and exploration ship, the M/Y Octopus, found the Musashi one kilometer (1.6 miles) deep on the …

  • Miriam bucks house arrest for Enrile
    Miriam bucks house arrest for Enrile

    Sen. Miriam Defensor-Santiago believes granting Senate Minority Leader Juan Ponce Enrile house arrest, while former President Gloria Macapagal-Arroyo remains under hospital detention, will violate the equal protection clause of the Constitution. “That’s already a violation of the equal protection of the law,” she said. …

  • 8 of 10 cities most at risk from natural disasters located in Phl – study
    8 of 10 cities most at risk from natural disasters located in Phl – study

    Eight of 10 world cities most exposed to natural hazards are in the Philippines and more than half of the 100 cities most exposed to earthquakes, storms and other disasters are in four Asian nations, according to a research. The study, published on Wednesday by risk analysis firm Verisk Maplecroft, analyzed the threat posed by storms, floods, earthquakes, tsunamis, fires, volcanoes and landslides in more than 1,300 cities. The study found that the 10 cities most at risk are Port Vila in …

  • US ambassador recovers from knife attack praised by N. Korea
    US ambassador recovers from knife attack praised by N. Korea

    The US ambassador to South Korea, Mark Lippert, was recovering from surgery Thursday after having his face and arm slashed by a knife-wielding activist in an attack applauded by North Korean state media. The United States condemned the "act of violence" which saw the ambassador rushed to hospital where his condition was described as stable after two-and-a-half hours of surgery that included 80 stitches to a deep gash on his right cheek. During the assault, Kim screamed a slogan in favour of …

  • World's oldest person wonders about secret to longevity too
    World's oldest person wonders about secret to longevity too

    TOKYO (AP) — The world's oldest person says 117 years doesn't seem like such a long time. …

  • New Moro rebel group emerges
    New Moro rebel group emerges

    A radical Muslim cleric trained in the Middle East and considered one of the leaders of the Bangsamoro Islamic Freedom Fighters (BIFF) has broken away from the terror group to form his own band of jihadists who are now reportedly providing sanctuary to bomb expert Basit Usman and at least five foreign militants, the military said yesterday. Armed Forces of the Philippines (AFP) spokesman Col. Restituto Padilla, citing reports from the field, said the Justice for Islamic Movement (JIM) was …

  • Ohio mom, boyfriend guilty; child emailed teacher for help

    PORTSMOUTH, Ohio (AP) — A woman and her boyfriend pleaded guilty to raping her young children and were sentenced to prison on Wednesday, a year after one of her daughters emailed a teacher for help and said she and her siblings were being chained to their beds, deprived of food and sexually assaulted. …

  • UNA hits PNP selection process
    UNA hits PNP selection process

    The United Nationalist Alliance (UNA) hit yesterday the apparent machinations in the selection of the new Philippine National Police (PNP) chief. Navotas Rep. Toby Tiangco, UNA interim president, said the administration and the ruling Liberal Party (LP) are perpetuating the bata-bata or patronage system in the selection process of the police chief. “They will start this by maneuvering the appointment of Gen. Garbo as PNP chief,” said Tiangco, referring to one of the top contenders for PNP …

POLL

Should Aquino be held accountable over the Mamasapano operations?

Loading...
Poll Choice Options