All the latest UK technology news, reviews and analysis

Weak passwords leave firms open to hackers

by Iain Thomson

More from this author

25 Apr 2006

Comments: 2

  • Tweet this
Poor password policy management is leaving firms open to hacking attacks
Infosec Europe 2006

Poor password policy management is leaving firms open to hacking attacks, a survey published today at Infosec Europe 2006 has warned.

Nearly two thirds of the 500 IT administrators who responded to the poll considered the passwords of their users to be inadequate, either using common dictionary words, names or other weak passwords.

Overall 86 per cent of users used one password for all their sites or a very limited pool of passwords. Over 40 per cent fall into the former category.

"It is madness to use the same password for your banking site as for your football supporters' page," said Graham Cluley, senior technology correspondent at Sophos, which carried out the survey.

"If someone is using key-logging software they could get complete access to all your confidential information. Mistakes like this can be very costly."

A weak password is defined as one that uses either dictionary words, which can easily be broken using a software-led brute force attack, or recognizable names.

A strong password uses a mixture of upper and lower case letters, numbers and punctuation characters.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Infrastructure Architect

An Infrastructure Technical Architect is required to...

Managed Services Processes Manager ITIL V3 , M3 M4

Managed Services Process's Manager, ITIL V3 Intermediate...

C#/ASP.net Developer

My client is an excellent company within the media industry...

ASP.NET MVC, C# Developer - Global Record Label - London

ASP.NET MVC, C# Developer (.NET, C#.NET, dot NET, Web...

To send to more than one email address, simply separate each address with a comma.