For a while, conventional wisdom was that making users change passwords frequently was an anti-pattern—encourages users to choose simple passwords. But with the risk of data being moved offline and brute-forced, has that changed? If the password is used on multiple sites, all it takes is for one careless site to have their encrypted passwords stolen, for offline cracking.
Of course, unique, complex, randomly-generated passwords from password managers such as 1Password are better still.
Of course, unique, complex, randomly-generated passwords from password managers such as 1Password are better still.
No comments:
Post a Comment