The Do’s and Don’ts to Choosing a Great Password

By
Windus Fernandez Brinkkord, AIF®, CEPA
January 8, 2019
Share on:

There are so many passwords that people need to remember these days. You have your online passwords, your wi-fi passwords, the passwords you use at work, and more. It can be enough to drive you crazy. By the time you think of yet another original password, you have forgotten the last one. It can be a little easier, however, if you follow the following Dos and Don’ts. DON’T use a password that is easy to guess. That means no password 123 or admin 2018. Don’t use something anyone could figure out, like your birthday, dog’s name, or your address. DO choose a password that only you could figure out, such as the embarrassing moment you never told anyone about or the name of the fish you overfed as a child.

DON’T share your password. Unless it is an account that you and your spouse share, there is no reason to give your account information to someone else. Remind your kids of this too. Many kids give their passwords to friends, which can lead to trouble down the line.

DO make sure your password has a combination of uppercase letters, lowercase letters, numbers, and special characters. Each website will have their own rules about what is required. Make sure it is at least six characters long, too, because length can contribute to the security of the password. For example, sTE”vE218 is a lot harder to crack then STEVE218. The trickier you can be the better.

DO use underscores or spaces. If the system will allow you to, this is a great choice. Not many people who are trying to guess a password will consider spaces or underscores. Trying to decide where you inserted them is even harder.

DON’T use the same password for multiple accounts. If someone is trying to steal your information and they figure out one password, you don’t want them to have the keys to your kingdom. It is much smarter to have a different password for each site to protect your assets.

DON’T make your password so difficult that you cannot remember it. If you notice a spider outside the window as you set your new work password and you make your password SPIDER875, there is a good chance that you will not remember it the next day. While the password has to be hard for other people to guess, it should be easy for you to remember.

DO have a password to protect your passwords. If you have all of your passwords saved to your computer and you are the only one that uses your computer, you can add a second layer of protection. Choose the option to have a password on your laptop. Then you can allow Google to save your passwords for each site you visit, but no one can access them because your laptop itself is password protected.

The opinions voiced in this material are for general information only and are not intended to provide specific advice or recommendations for any individual.

You may also like:

By Trilogy Financial
June 7, 2024

CryptoChameleon is a phishing-as-a-service kit that makes it easier than ever for cybercriminals to create convincing phishing campaigns. Criminals often use it to impersonate reputable companies to steal passwords, account information, and other sensitive data.

 

A recent scam using CryptoChameleon targets LastPass, a popular password manager. Scammers pretend to be from LastPass, starting with seemingly authentic support calls. They later send follow-up emails with links to fake login pages, designed to look like legitimate LastPass sites. Once victims enter their master passwords on these fraudulent pages, scammers can access their password vaults and potentially lock them out of their accounts.

 

Reputable companies will never ask for your master passwords through phone calls, emails, or text messages. To protect yourself from these scams, remember to:

 

  • Hang up immediately if you receive a suspicious call claiming to be from LastPass or another reputable company.
  • Do not press any options in automated messages or clicking on links in emails from unfamiliar sources.
  • Report suspicious activity to the reputable company, including screenshots of suspect text messages and forwarded emails.
By
Steve Hartel, MBA, AIF®
March 19, 2018

In 2001, the Securities and Exchange Commission (SEC) adopted a new rule to supposedly prohibit mutual fund names that may mislead investors about a fund’s investments and risks. The rule required a fund with a name suggesting that the fund focuses on a particular type of investment (e.g., “stocks” or “bonds”) to invest at least 80% of its assets accordingly. Previously, funds were subject to a 65% investment requirement.

This rule resulted in many funds changing their names, changing their investments, or both. In general, things are better now than they were before the 2001 rule. However, today’s mutual fund names and categories can still be confusing and/or misleading.

Blurred Boundaries

For example, let’s look at names that connote where the fund buys its investments. These names usually contain words like “Domestic,” “International,” “Global,” and “World.” Imagine a Domestic Large-Cap fund, whose name suggests it buys large, U.S. companies. But if the fund owns mostly companies in the S&P 500 Index, those companies might be generating up to 50% of their revenues outside of the U.S. The large multinational firm might be based in the U.S. but do business in countries all around the world. The opposite may be true of funds with “Global” or “World” in their name; those companies based in foreign countries may be deriving some or all of their revenue from dealings with the U.S.

Undefined Jargon

Another confusing category of funds is called “smart beta”. Investopedia defines Beta this way1:

“Beta is a measure of the volatility, or systematic risk, of a security or a portfolio in comparison to the market as a whole. Beta is used in the capital asset pricing model (CAPM), which calculates the expected return of an asset based on its beta and expected market returns.”

Got that? Let’s assume you totally understand beta and CAPM. So, what is “smart” beta? If beta is a measure of volatility, then a reasonable person might assume that “smart beta” is a more intelligent measure of volatility, right? Let’s see if the definition of smart beta contains the word “volatility.”

Investopedia defines smart beta this way2:

The goal of smart beta is to obtain alpha, lower risk or increase diversification at a cost lower than traditional active management and marginally higher than straight index investing. It seeks the best construction of an optimally diversified portfolio. In effect, smart beta is a combination of efficient-market hypothesis and value investing. Smart beta defines a set of investment strategies that emphasize the use of alternative index construction rules to traditional market capitalization-based indices. Smart beta emphasizes capturing investment factors or market inefficiencies in a rules-based and transparent way. The increased popularity of smart beta is linked to a desire for portfolio risk management and diversification along factor dimensions, as well as seeking to enhance risk-adjusted returns above cap-weighted indices.

Hmm. Not a single mention of volatility. Are you confused yet?

Growth, Aggressive Growth, Capital Appreciation, Equity Income

Growth sounds good, but how is it different from capital appreciation? Don’t they mean the same thing? Does aggressive mean faster, riskier, meaner, or something else? Equity income funds are supposed to be stocks that pay dividends, right? So, what category do you think the Dividend Growth Small & Mid-Cap Fund3 is? It has both “dividend” and “growth” in its name, but are they separate or together? Does the fund invest in companies whose dividends are growing, or does it invest in growth companies that also pay dividends? An investor would need to read the fund’s prospectus to find out for sure. I’m sure all good investors thoroughly read those prospectuses from cover to cover.

Reporting Problem

The SEC requires mutual funds to report complete lists of their holdings on a quarterly basis. So, the manager of the hypothetical Blah-Blah Domestic Large Cap Fund could buy a bunch of foreign small-cap stocks on January 1 and hold them until March 28. Then, the manager could sell them and replace them with domestic large-cap stocks, and report on March 31 that the fund was properly holding domestic large cap stocks as required. On April 1, the manager could buy back the foreign small cap stocks and repeat that process every quarter.

Conclusion

Mutual fund names and categories are more informative than they used to be, but they can still be quite confusing or misleading. Investors (and advisors) need to do their due diligence, fully read those prospectuses, and closely follow the actions of the fund managers. Is your advisor recommending mutual funds? Are they confident of what’s really in those funds? Are you? If you have any questions about the mutual funds in your portfolio, email me at steve.hartel@trilogyfs.com and I if I can’t answer your question, I will find someone who can.

  1. https://www.investopedia.com/terms/b/beta.asp
  2. https://www.investopedia.com/terms/s/smart-beta.asp

Get Started on Your Financial Life Plan Today