According to a report by Dashlane, 66% of the UK's top e-commerce websites allow users to use weak passwords, such as "123456" or "password".
The same percentage of sites – including Amazon, Tesco, New Look and Next – do not block user accounts after ten failed login attempts. This makes the accounts vulnerable to brute force attacks.
Additionally, 60% of websites do not provide advice on creating a strong password. Only 14% of services display a meter that informs users about the strength of the password they choose.
“It is clear that the time has come for companies to implement password security policies, something that can be done easily, quickly and economically using open-source technology” says Ashley Thurston of Dashlane.

