Predictable Android lock patterns

Aug 21, 2015

Passwords are annoying, which is why so many people use passwords that are less than secure. Maybe the keys are a bit shorter than they should be, match a word in the dictionary, or are repeats across services. In these cluster of passwords, patterns become obvious.

Marte Løge, for her master’s thesis at Norwegian University of Science and Technology, wondered if similar rules applied to Android lock screen patterns. Dan Goodin for Ars Technica explains:

Data breaches over the years have repeatedly shown some of the most common passwords are “1234567”, “password”, and “letmein”. Løge said many ALPs suffer a similar form of weakness. More than 10 percent of the ones she collected were fashioned after an alphabetic letter, which often corresponded to the first initial of the subject or of a spouse, child, or other person close to the subject. The discovery is significant, because it means attackers may have a one-in-ten chance of guessing an ALP with no more than about 100 guesses. The number of guesses could be reduced further if the attacker knows the names of the target or of people close to the target.

So wait a minute. What’s a lock screen?


Years You Have Left to Live, Probably

The individual data points of life are much less predictable than the average. Here’s a simulation that shows you how much time is left on the clock.

Where Bars Outnumber Grocery Stores

A closer look at the age old question of where there are more bars than grocery stores, and vice versa.

How You Will Die

So far we’ve seen when you will die and how other people tend to die. Now let’s put the two together to see how and when you will die, given your sex, race, and age.

This is an American Workday, By Occupation

I simulated a day for employed Americans to see when and where they work.