Improving password security
Summary
A hacked internet-connected device can be used with a credit card to avoid the bank or payment gateway suspecting any fake transaction. An article describing the NIST password guidelines and best practices lists many good things to ensure that safety is maintained. While it is composed of four different unconnected words, the entropy in proportion to the number of characters is undoubtedly lower than the cryptic password mentioned earlier. You can create a temporary password for services you rarely use, and as long as you give your email address, you can happily forget it after you use it. Multifactor Authentication protected by biometric identification is the gold standard, and primarily when these are based on an app (and not SMS), they are considered very safe.