How to create strong passwords I can actually remember?


I’ve always tried to keep my passwords reasonably strong but still something I could remember when I didn’t have access to a password manager. With all of the “reset your password immediately” warnings lately due to data breaches, that is becoming harder and harder for me. Does anyone have tips for creating passwords that are reasonably strong that can still be remembered?

Topic: Security
Answer this Question


3 total
Vote Up (8)

There are two methods I use that might be of help to you. The first one is that I create a pattern on the keyboard. This is particularly effective for me, as a visual learner. For example, I might use “the mountain and the valley” - zse4rfvbnm. Look at your keyboard and follow the letters and you can see why I called it that. FYI, I don’t actually use that one, but just made it up to give a simple example. 


The second method, and one used by many people, is to pick a line from a song, movie, whatever and use the first letter of each word. Pick a letter or two that you can remember to replace with a number (example “L” = “1” or “B” = “8”).

Vote Up (5)

How To Create and Remember Strong Passwords

"One of the best ways to protect your online security is to have strong passwords that you change periodically. But that’s easier said than done. Coming up with hard-to-guess passwords is hard enough, but it’s even harder to have separate passwords for different sites and to remember new ones after you change them.

One way to create a password that’s hard to guess but easy to remember is to make up a phrase. You could type in the entire phrase (some sites let you use spaces, others don’t) or you can use the initials of each word in the phrase, for instance, “IgfLESi#85″ for “I graduated from Lincoln Elementary School in ’85″ with a # symbol to add more security. An even better one would be “Mn1bfihswE&S” for “My number 1 best friends in high school were Eric and Steve.” You get the idea–upper case numbers, letters, and symbols that are seemingly meaningless to everyone but you. Microsoft has an excellent primer on passwords and a password strength checker."

Vote Up (4)

I use keepass (and yes, there is an android version) for my pw management. One tip I have: if a site requires a "security" question, generate the answer with keepass and store it in the notes section of that entry. Security questions are pretty stinking insecure.

Ask a question

Join Now or Sign In to ask a question.
Google, Dropbox and the Open Technology Fund are supporting a new organization focused on making open-source security and privacy tools more user-friendly.
Among six major U.S. cities, CSOs are paid the most in San Francisco and New York, but factoring in the cost of living makes Denver and Chicago the best bang-for-the-buck places.
Apple's iOS 8 addresses a serious weakness that could allow attackers to hijack the wireless network authentication of Apple devices and gain access to enterprise networks.
Legislation introduced in the U.S. Senate on Thursday aims to place limits on access by U.S. law enforcement agencies to emails and other communications stored abroad.
Two online advertising networks, Google's DoubleClick and Zedo, have been delivering malicious advertisements that could install malware on a person's computer, according to the security vendor Malwarebytes.
Google is turning on data encryption by default in the next version of Android, a step that mirrors broad moves in the technology industry to ensure better data security.
CloudFlare said it has engineered a novel way to handle sensitive encryption keys that allows organizations such as financial institutions to still use its caching service to fend off cyberattacks.
Samsung on Thursday announced price reductions and updates for its Knox security and management software for IT shops and a free My Knox service that is directly available to professionals using ActiveSync.
The breach of Home Depot's payment systems may have compromised 56 million payment cards as a result of malware that has since been eliminated, the company said Thursday.
Apple outlined its new privacy policy and set up a site to explain what information it collects from users and how it handles it, as the company enters new areas like health tracking and mobile payments that have potential privacy implications.
Join us: