Strong passwords

RSS
Latest post Tue, Jul 8 2008 6:31 PM by Brett Callow (5,965 pts ) . 0 replies.
  • Strong passwords

    In the article The Cornerstone of Internet Security: Strategies to Construct a Proper Password, richmonjames offers some generally sound advice about web password security, however, a number of the recommendations made are of questionable validity:

    • Make your password as long as possible. This provides no protection whatsoever against the most commonly used methods of web password harvesting - namely phishing and keylogging - but certainly places a considerable burden on end-users.
    • Change your password every 30 days. This only provides protection if an attacker is slow to act. Furthermore, for many users, it simply wouldn't prove practical. As the article points out, many users have numerous password-protected accounts - from online banking to email to online store accounts - and to change each of those passwords every 30 days would be enormously time consuming.

    In my opinion, it's perfectly ok for users to choose resonably simple web passwords, so long as they cannot be easily guessed. And there's really no need for those passwords to be changed on a frequent schedule.

    It's important that users have an awareness of security matters in general, including the risks that may be associated with their surroundings - as illustrated by Bill Anderson's article Risky Business, Using Kiosk Computers.

    The article Do Strong Web Passwords Accomplish Anything? from Microsoft Research makes for interesting reading.

    Published by Brett Callow (5,965 pts ) on Jul 8 2008, 06:31 PM to
    Internet Security Discussions
showing 1-1 of 1    

Sign Up for Weekly Updates
Enter your email to subscribe to the Security & Privacy Newsletter
 
Featured Internet Security Topics
Hacking
Bright Hub - Science & Technology Articles, Buyer's Guides, How-To Tips and Software Reviews
About Bright Hub | Contact Us | Advertise with Us | Become a Writer | RSS | Site Map | Terms of Use | Privacy Policy | Copyright Policy
©2009 Bright Hub Inc. All rights reserved. Page copy protected against web site content infringement by Copyscape