|
Every day the news reports about various security breaches and other incidents, many of which could have been prevented, if users used secure passwords.
Why Secure Passwords are Important?
Passwords are one of the few protections users have in order to keep their private information private. Passwords haven't been created to torture innocent users but to protect them from unauthorized access.
On the other hand, no matter how secure a network, an email system, or simply a web site is, when users show gross negligence about their passwords, this is simply asking for trouble. That is why it is important to have secure passwords and above all – not to disclose them to anybody else.
The Right Approaches to Secure Passwords
Secure passwords are not something which requires a lot of brains or effort. Here are some useful tips on creating secure passwords:
- No blank/default passwords. Blank (or empty) passwords are the first thingk a hacker attempts when he or she is trying to penetrate somebody else's account. Default passwords (i.e the password, with which the application has been shipped) are the second victim. So, never leave passwords blank or as they are by default – this is an enormous security risk!
- Passwords must contain mixed case letters and numbers. Passwords which are easy to guess, are not secure. Easy passwords are all the words in a dictionary because it only takes time (and the appropriate software) to perform a dictionary attack and discover a password. Passwords that contain mixed case letters (i.e both uppercase and lowercase) and numbers (or punctuation, if the application allows it) are best. In theory, they still can be guessed but it will take millions of years to do it.
- Avoid “reusable” passwords. It has already been said that passwords haven't been invented to torture users but to protect them. Therefore, making some effort to come up with a unique password for each important site a user visits, rather than using one and the same password for absolutely all sites, is strongly recommended. If it is not possible to have unique passwords for all sites, having unique passwords at least for the most critical ones is more than nothing.
- Change passwords frequently. Even the most secure passwords can be guessed, so changing passwords for critical systems at least once a month can bring some peace of mind.
- Don't disclose passwords to other people. Following all of the above is pointless, if anybody else knows a user's password. That is why a user should never tell his or her password to other people. Also, users shouldn't write their passwords on post-it notes or anywhere else where somebody can see it.
Passwords are vital for security and that is why users should take all precautions to have secure passwords and keep them private. This is the right approach to security and if everybody follows it, there will be less opportunities for hackers.
The copyright of the article Secure Passwords Are Vital in Internet Security is owned by Tsveti Georgieva. Permission to republish Secure Passwords Are Vital in print or online must be granted by the author in writing.
|