Also see Social Networking & Doxxing and Online Privacy.
As of May 2025
Password Use Case | Recommended Length (Post-Quantum) | Notes |
---|---|---|
Standard login password (hashed with bcrypt/scrypt/Argon2) | 16+ characters | Include upper/lowercase, numbers, symbols. Use a passphrase (e.g., “CorrectHorseBatteryStaple”). |
High-security systems (admin, financial, sensitive data) | 20–24+ characters | Use passphrases or random strings from a password manager. |
Encryption passphrases (e.g., PGP, file encryption) | 32+ characters | Quantum attacks may eventually brute-force shorter keys; longer passwords help mitigate risk. |
Wi-Fi passwords (WPA3) | 16–24 characters | Use maximum supported length to reduce offline cracking potential. |