Home NCSC Guides Setting strong passwords and passphrases

Setting strong passwords and passphrases

Published:

Aug 14, 2025

Updated:

AUG 22, 2025

Who can use this content?

Individuals

Weak or reused passwords are one of the leading causes of account breaches. A strong password (or passphrase) makes it significantly harder for cybercriminals to gain unauthorized access.

"

What makes a strong password?

Creating strong, unique passwords helps improve security. A strong password can be made from a combination of different characters.  As cybercriminals continue to refine their attack methods, they can easily obtain access by cracking passwords. To ensure your passwords are strong and not easily crackable, ensure that your passwords;

  • Are at least 12-16 characters in length
  • have a mixture of uppercase, lowercase, numbers, and special symbols
  • Are unique for different accounts
  • Avoid dictionary words, names, or patterns (e.g., Password123!)

 

For more security, use a password manager. It can store your long, more complex passwords that you can not remember.

"

Using Passphrases

A passphrase is a longer string of random words, making it both secure and memorable.

How to make a secure passphrase

  1. Make it long. Choose at least 4-5 unrelated words
  2. Mix in capitalization, numbers, or symbols
  3. Keep it unique

Example passphrase:

Dog5tr33t.eYe.