Swamp Geek
  Login or Register HomeDownloadsYour Account   
Navigation 
Site Info 
Last SeenLast Seen
Server TrafficServer Traffic
  • Total: 4,195,670
  • Today: 146
Server InfoServer Info
  • Apr 27, 2024
  • 02:10 am CDT
 
 
Reviews, comparisons, and opinions about the latest technology products, services, trends and anything of interest to the thick glasses crowd!
Cybersecurity Awareness Tip 21: Treat Password Reset Security Questions Like Pas
Cybersecurity Awareness Month

Cybersecurity Awareness Tip 21: Treat Password Reset Security Questions Like Passwords

Many banks, credit card providers and other financial institutions use modern methods like multi-factor authentication for resetting passwords. But some accounts still require users to provide answers to security questions to reset passwords, and others, like Apple ID, are transitioning from security questions to multi-factor authentication.

Assume Your Personal Information Has Been Compromised

But knowledge-based authentication has been widely abused by hackers. David Kernell, son of a longtime state representative and then a college student, used publicly available information to gain access to then-presidential candidate Sarin Palin's email. Kernell was convicted and sentenced to a year and a day in federal prison, but the damage was done. After multiple data leaks, Facebook warned it's 2 billion users to "assume malicious third-party scrapers have compromised their public profile information."

Minimizing the Risk of Security Questions

To minimize the risk of password reset security questions and other knowledge-based authentication:

Resources

Sorry, Comments are not available for this article.