UK finally bans '12345' passwords on connected devices
Briefly

Of the three main requirements all smart devices must adhere to, shipping devices with easily crackable default passwords is arguably the headliner. Default passwords are allowed, but if they're easily discoverable online, then it will fall foul of the Act.
Professor Alan Woodward commented that the PSTI Act focusing on basic security measures against weak passwords is a good first step, highlighting the importance of such actions in preventing simple attacks.
The PSTI Act also mandates manufacturers to have a point of contact for security concerns and disclose the minimum period for security updates, although without specifying a set duration for update support.
Read at Theregister
[
|
]