{"id":1365,"date":"2017-01-06T14:39:19","date_gmt":"2017-01-06T18:39:19","guid":{"rendered":"https:\/\/www.openbible.info\/blog\/?p=1365"},"modified":"2025-08-09T14:02:42","modified_gmt":"2025-08-09T18:02:42","slug":"jesus-is-not-your-password","status":"publish","type":"post","link":"https:\/\/www.openbible.info\/blog\/2017\/01\/jesus-is-not-your-password\/","title":{"rendered":"Jesus is not your password"},"content":{"rendered":"<p>At <cite>Christianity Today<\/cite> I have a piece today about bad passwords that Christians use: <a href=\"https:\/\/www.christianitytoday.com\/2017\/01\/beware-of-making-jesus-your-password\/\">Beware of Making Jesus Your Password<\/a>. I&#8217;m pretty excited that they kept the line about soccer.<\/p>\n<p>Here I want to share the data behind the piece. The 32 million passwords come from the 2009 RockYou breach, <a href=\"https:\/\/github.com\/danielmiessler\/SecLists\/tree\/master\/Passwords\">available here<\/a>. I used <a href=\"https:\/\/github.com\/danielmiessler\/SecLists\/blob\/master\/Passwords\/rockyou-withcount.txt.tar.gz\">rockyou-withcount.txt.tar.gz<\/a>.<\/p>\n<p>The main list of passwords comes from (1) taking this list, (2) removing non-alphanumeric and leading and trailing numbers, (3) lower-casing the result, and (4) combining the totals. In the raw list, &#8220;jesus&#8221; is the 103rd most-common password; by normalizing it with these steps, it jumps to #30. The purpose here is to find the core part of the password. It&#8217;s good from a security perspective that people add leading and trailing (mostly trailing) numbers to their passwords, but they&#8217;re not so relevant here.<\/p>\n<p>The list of &#8220;Christian&#8221; passwords is based on a <a href=\"https:\/\/github.com\/danielmiessler\/SecLists\/blob\/master\/Passwords\/faithwriters-withcount.txt\">different breach<\/a> of a faith-based website. I pulled a bunch of patterns from passwords that were popular there.<\/p>\n<p>Here&#8217;s the data behind the piece:<\/p>\n<ol>\n<li><a href=\"https:\/\/a.openbible.info\/blog\/2017-01-normalized-passwords.zip\">normalized-passwords.zip<\/a>. A list of 238,000 passwords following the normalization scheme I describe above. Every normalized password from RockYou that appeared at least ten times is here. Note that there&#8217;s extensive swearing.<\/li>\n<li><a href=\"https:\/\/a.openbible.info\/blog\/2017-01-christian-passwords.txt\">christian-passwords.txt<\/a>. All 505 Christian-themed passwords.<\/li>\n<li><a href=\"https:\/\/a.openbible.info\/blog\/2017-01-verse-passwords.txt\">verse-passwords.txt<\/a>. All 295 plausible verse references. Not all of them are actually references: for example, &#8220;daniel14&#8221; could refer to <a href=\"https:\/\/www.biblegateway.com\/passage\/?search=Daniel+1%3A4&amp;version=NIV\">Daniel 1:4<\/a> (or even <a href=\"https:\/\/www.biblegateway.com\/passage\/?search=Daniel+14&amp;version=NABRE\">Daniel 14<\/a>), but it&#8217;s most likely just someone&#8217;s name with the number &#8220;14&#8221; after it. So I don&#8217;t include it in the top-25 list that appears at CT.<\/li>\n<\/ol>\n<p>These are my favorite tweets about it:<\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"en\">\n<p dir=\"ltr\" lang=\"en\"><a href=\"https:\/\/twitter.com\/Nicole_Cliffe\">@nicole_cliffe<\/a> i am fishing for men while they are phishing for men.<\/p>\n<p>\u2014 Ben Sharbaugh (@bsharbaugh) <a href=\"https:\/\/twitter.com\/bsharbaugh\/status\/817425496313053185\">January 6, 2017<\/a><\/p><\/blockquote>\n<blockquote class=\"twitter-tweet\" data-lang=\"en\">\n<p dir=\"ltr\" lang=\"en\"><a href=\"https:\/\/twitter.com\/bsharbaugh\">@bsharbaugh<\/a> <a href=\"https:\/\/twitter.com\/Nicole_Cliffe\">@Nicole_Cliffe<\/a> Phishers of men is a pretty sweet name for a hacker group.<\/p>\n<p>\u2014 Tim Sullivan (@t_t_t_timmy) <a href=\"https:\/\/twitter.com\/t_t_t_timmy\/status\/817426300742856704\">January 6, 2017<\/a><\/p><\/blockquote>\n<blockquote class=\"twitter-tweet\" data-lang=\"en\">\n<p dir=\"ltr\" lang=\"en\">Jesus welcomes all, which is not great for computer privacy:<a href=\"https:\/\/t.co\/kKCiuLIbrB\">https:\/\/t.co\/kKCiuLIbrB<\/a><\/p>\n<p>(HT: <a href=\"https:\/\/twitter.com\/Nicole_Cliffe\">@Nicole_Cliffe<\/a>) <a href=\"https:\/\/t.co\/tvrRmpB52g\">pic.twitter.com\/tvrRmpB52g<\/a><\/p>\n<p>\u2014 John Scalzi (@scalzi) <a href=\"https:\/\/twitter.com\/scalzi\/status\/817420226451095552\">January 6, 2017<\/a><\/p><\/blockquote>\n<p><script async=\"\" src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>At Christianity Today I have a piece today about bad passwords that Christians use: Beware of Making Jesus Your Password. I&#8217;m pretty excited that they kept the line about soccer. Here I want to share the data behind the piece. The 32 million passwords come from the 2009 RockYou breach, available here. I used rockyou-withcount.txt.tar.gz. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[32],"tags":[],"_links":{"self":[{"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/posts\/1365"}],"collection":[{"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/comments?post=1365"}],"version-history":[{"count":7,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/posts\/1365\/revisions"}],"predecessor-version":[{"id":1742,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/posts\/1365\/revisions\/1742"}],"wp:attachment":[{"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/media?parent=1365"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/categories?post=1365"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.openbible.info\/blog\/wp-json\/wp\/v2\/tags?post=1365"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}