Frequent change of passwords may not be a good idea
Forcing people to keep changing their passwords can result in them coming up with bad passwords
Washington
Most office drones have had to deal with a job that requires them to keep changing their passwords like clockwork, maybe every six months or so. The longstanding information technology (IT) security practice is based on the idea that flushing out old passwords will cut off access for bad guys who may have figured them out.
But according to the US Federal Trade Commission's chief technologist, Lorrie Cranor, the strategy has some major holes.
TRENDING NOW
CSE Global independent director quits after clashes with chairman Eugene Lai over board refresh
Cat A COE rate exceeds Cat B for third time in 4 months; premiums largely down
What’s wrong with Orchard Road? Experts weigh in on the street’s cachet and its future
Singapore workers experiencing rising anxiety; signs of fallout from pressure to use AI