Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Brits are crap at password security
John Leyden, The Register 2004-04-20

The British are blasé about keeping sensitive personal data confidential. More than 60 per cent of 100 people approached in the street by researchers were happy to give clues about the type of password they used (such as date of birth or family names) on online banking or ecommerce sites. Combine this with other information, obtained through various social engineering tricks, and it is fairly easy to piece together a potential victim's online identity.

Comments Mode:
Brits are crap at password security 2004-04-20
Chris (1 replies)
Can you say "Duh?" 2004-04-21
Anonymous
Brits are crap at password security 2004-04-22
Anonymous
I currently have 202 passwords not including bank and credit card PIN.

What's a good password anyway?

I use a mix of 12 letters and numbers and an uppercase/lowercase mix in a personal code based on the site and my system hardwear, easy to remember hard to guess.

all keyboard presses are computer coded so any password is as vulnerable as any other. look at the *** to letter password revealer apps available.

Combination user id / cookie / copy the graphic number to enter / no copy or paste automatic key entry /smartcard /token /physical presence etc. all have their problems.

Your passwords will be just as easily discovered Think about it.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/8490/25905#25905







 

Privacy Statement
Copyright 2008, SecurityFocus