So I've read a couple brief things about password strength and found a list of the top 10,000 passwords that account for some 99.8% of all passwords on the internet. Below are some things everyone should know based on what I found.
1. Don't use anything less than 8 characters.
2. Never use single words. Anything that is found in the dictionary is no good.
3. No common names of people, places, books, characters, movies, etc.
4. No Makes or Models of cars
5. No sports teams or mascots
6. Don't do the above and misspell a word, or replace letters with numbers. You aren't helping yourself.
This password checker I found seems to contain the list of 10k that I found. Easy to test how terrible your password is, though I'd probably not put in exactly what your "really good password" is.
https://howsecureismypassword.net/This comic explains password strength pretty amazingly.
http://xkcd.com/936/Worth noting that the comic puts 1000 guesses a second. Apparently, unimpressive cracking algorithms and a computer with a mediocre graphics card could do 1billion a second or more. Or at least thats what some places said.So you'll need to do better than correcthorsestaplebattery
