New research from Specops Software shows that love-themed passwords are still extremely common, despite years of warnings from security experts. In fact, across a database of breached and compromised passwords, the word “love” appeared more than 4.7 million times — making it one of the most predictable (and hackable) choices users continue to rely on.
Additionally, terms from classic literature such as Wuthering Heights and from popular romance-themed TV shows like Heated Rivalry, are frequently appearing, suggesting that people often choose passwords based on beloved characters, themes, and fandom referenced.
The top 5 romance pop-culture breached passwords right now are:
- ilya – 233,702
- shane – 105,429
- hockey – 67,658
- boston – 34,886
- catherine – 25,143
This may seem like a harmless trend at first glance but predictable passwords are always a prblem because they are easier to breach in attacks. When users create romantic passwords based on love, names, pop culture, or seasonal events, they reduce the overall number of guesses an attacker needs.
The full details of this analysis can be found here: https://specopssoft.com/blog/romantic-passwords-cybercriminals-love/
Inside Infostealer Attacks By Specops
Posted in Commentary with tags Specops on September 15, 2026 by itnerdAn infostealer needs only a short window on an endpoint. It searches browsers and local folders for saved passwords, session cookies and cloud keys, packages what it finds and sends it out. Removing the malware afterwards doesn’t reach any of that. Mandiant found at least 79.7 percent of the accounts used in the 2024 Snowflake attacks had credentials exposed beforehand, the earliest traced to November 2020.
The research publishes alongside an update adding more than 46 million newly compromised passwords. You can view it here: Inside Infostealer Attacks
Leave a comment »