Frequent change of passwords may not be a good idea
Forcing people to keep changing their passwords can result in them coming up with bad passwords
Washington
Most office drones have had to deal with a job that requires them to keep changing their passwords like clockwork, maybe every six months or so. The longstanding information technology (IT) security practice is based on the idea that flushing out old passwords will cut off access for bad guys who may have figured them out.
But according to the US Federal Trade Commission's chief technologist, Lorrie Cranor, the strategy has some major holes.
TRENDING NOW
‘I felt like dying’: Thai Singha beer scion speaks up after disclosure of alleged sexual abuse
In a world of long-drawn crises, ‘wait and see’ may be a decreasingly tenable stance
SpaceX’s US$1.75 trillion IPO: How retail investors, including those in Singapore, can buy shares
The returnees: Inside China’s AI talent reversal