Your mother's maiden name is not a secret
DeeperDive is a beta AI feature. Refer to full articles for the facts.
New York
RESOLUTIONS to shake laziness, get organised and gain control of finances are ritually adopted each January - and abandoned soon after. But there is one common bad habit that consumers and billion-dollar businesses alike should have quit long ago and cannot afford to carry into 2018: the use of weak website security questions.
Your mother's maiden name is not a secret. This should be obvious, yet this question and similarly flawed questions continue to be asked of us when we forget a password or log in from a new computer. Website security questions have been around since the dawn of the Web but became ubiquitous after a 2005 recommendation by the Federal Financial Institutions Examination Council that banks improve their security measures for online banking. The council did not specify what these improvements should be, and so banks chose security questions, something that they had been using offline for decades anyway - the mother's maiden name convention dates to 1882. Other types of businesses, perhaps assuming that the banks knew what they were doing, followed suit.
Copyright SPH Media. All rights reserved.
TRENDING NOW
Singaporeans can now buy record amount of yen per Singdollar
Beijing’s calculated silence on the Iran war
China pips the US if Asean is forced to choose, but analysts warn against reading it like a sports result
StarHub hands Ensign InfoSecurity control back to Temasek in S$115 million deal, books S$200 million gain