Update on July 13 - Yahoo fixes flaw behind 450,000 account hack
When you have 450,000 passwords, you can do a bit of analysis. ESET used the password analyser Pipal to compile some statistics (full data dump available on Pastebin).
First off, there were apparently only 442,773 passwords, contrary to the previously reported number I mentioned above. Secondly, 342,478 of them were unique, meaning that 100,295 passwords, or 22.65 percent of the total, were used by more than one person.
Here are the top 10 passwords from the Yahoo hack:
Here are the top 10 base words from the Yahoo hack:
Here are the top 10 e-mail address domain names:
If you have a Yahoo account, you should change your password, just to be on the safe side. Furthermore, if you use the same e-mail address and password combination elsewhere, you should change it there as well.
Update on July 13 - Yahoo fixes flaw behind 450,000 account hack
See also: