Welcome to the First Column IT Tech Blog

HomeBlog
Your Eight-Character Passwords are Truly Obsolete

Your Eight-Character Passwords are Truly Obsolete

February 27, 2026

For literal decades, we heard that a good password required a few key traits to be secure: a capital letter, a number, and eight characters. How times have changed, right?

Now, the baseline standards are similar… just multiplied to the nth degree. Let’s discuss why this is, what modern businesses now need to do, and how we can help to maintain password security moving forward.

First and Foremost, Why Do Passwords Need to Be So Much More Complicated?

In short, the bad guys have better tools than they once did.

Quantum computing is coming, and once they have access to it, a hacker will be able to crack these codes exponentially faster by trying multiple keys at once.

Of course, modern hackers don't need bleeding-edge equipment at all. Modern graphics cards can crack passwords that adhere to the old eight-character standard in under a minute.

This is Why NIST Says the Longer, the Better

The National Institute of Standards and Technology has gone on record to say that longer passwords are more effective than those that simply focus on adding symbols and numbers—for instance, “s89fnuHJHJN8dkm??jndfmk” as compared to “45rut@beg@47.”

Why? Simple: every additional character added to a password makes it exponentially more difficult to crack. This is true whether the attacker is using a run-of-the-mill rig to crack passwords or has access to quantum capabilities. Increasing from an eight-character password to a sixteen-character password racks up the number of possibilities from 6.6 quadrillion to 3.4 unvigintillion.

For reference, that’s 6,600,000,000,000,000 and 3,400,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000, respectively.

For Now, the Passphrase is Your Safest Bet

The web comic xkcd provides an excellent explanation of why a passphrase is a better option than a password, but in essence, a passphrase can be much more variable than a password while still being far easier to remember, even with a bit of alphanumeric switching added.

Passwords May Soon Be Obsolete, Regardless

Passwords, as a whole, are woefully insecure compared to other options, which is why we wholeheartedly endorse the use of phishing-resistant multi-factor authentication. This means the use of cryptographic passkeys and biometrics in addition to (or in favor of) more traditional passwords.

While we haven’t quite reached the point where this is the norm, reach out to us to find out how we can help you lock down your user authentication.

We’ll Help You Secure Your Business So You’re Ready for the Future

We can help you implement a variety of tools and safeguards—including a password manager—to ensure your business remains secure and productive. Find out more about what we can do by giving us a call at (571) 470-5594.

Previous Post
March 21, 2026
Why Data Silos Will Kill Your Generative AI Project
In the race to implement generative AI and predictive analytics, most organizations focus on the high-profile tasks: choosing a Large Language Model (LLM), fine-tuning the parameters they need to use, or designing sleek user interfaces. There is a gritty, structural reality that often brings these projects to a grinding halt before they even launch: data silos.
March 19, 2026
How the 3-2-1-1 Strategy Protects Your Business
We’ve all heard the old proverb: “Data doesn’t exist unless it’s in three places.” For years, the 3-2-1 backup strategy was the industry gold standard. It was simple, effective, and kept us safe from hardware failures and accidental deletions.
March 17, 2026
4 Ways Algorithmic Efficiency Will Change How You Work
The old ways of working aren't just outdated, they’re a liability. As we navigate the mid-2020s, the “hustle harder” mantra has been replaced by a more sophisticated approach: algorithmic efficiency. If you’re still manually wrestling with your inbox or playing calendar Tetris, you’re running legacy software on modern hardware. This month, we thought we’d give you four tips to maximize your efficiency.

Have a project in mind?

Start with our free consultation for VA, DC and MD companies. We will provide a detailed proposal and firm quote based on your specific IT support needs. All at a predictable monthly cost per seat.
Free Consultation - Sign Up Here