Many breaches can be traced to poor password security
Many breaches can be traced to poor password security

Four passwords needed to foil hackers

Users urged to maintain different passwords for home, work, surfing and banking

Steve Ranger

Every computer user should have at least four different types of password to securely access websites and work systems, according to the Computing Technology Industry Association (CompTIA).

The IT trade organisation said that human error is the primary cause of IT security breaches, and in many instances security breaches can be traced back to poor password security.

Advertisement

CompTIA warned that people should use multiple passwords, because if one is compromised or stolen they could become the victim of identity theft or financial loss. And if the lost password is the same one used at work, the organisation warned that "the consequences for your employer could be disastrous".

"As we have incorporated computer use into more and more of our lives at home and at work, the number of passwords we use has grown exponentially," said John Venator, president and chief executive at CompTIA.

The organisation recommends that users maintain four passwords. The first should be easy to remember for use on general websites. The same password can be used in many low-risk places because the consequences are minimal if the password is compromised.

The second password should be more complex, with a mix of numbers and letters, for e-commerce websites. But if this password is compromised, CompTIA warned, there may be financial implications, such as credit card theft.

Thirdly a "very complex" password is required for banking websites. This password should contain lower case letters, uppercase letters, numbers and punctuation marks, or at least three of these four categories. If this password is compromised, identity theft is possible.

Finally a separate password should be used only at work, which should not resemble any of the passwords used for home and personal computing.

All passwords except the easy website password should be changed at least every 90 days, the trade body advised.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Conference hears gloomy forecast for online fraud

Online fraud hits record levels

Total amount stolen in the US last year estimated at $1.2bn

Worm uses passwords to hit MySQL

Password protection wake-up call alarms admins

E-commerce hit hard by fear of fraud

Who's got your credit card number?

Gone phishing

Phishing is becoming ever more prevalent and ever more dangerous

Related whitepapers

Related jobs

Most watched

eu flag

V3.co.uk weekly debrief, 6 Nov 09

This week, Europe decides what to do with illegal file sharers

Intel unveils its micro server platform

Small-enclosure systems take aim at hosting market

IT white papers

Search white papers

Top categories

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

eu flag

V3.co.uk weekly debrief, 6 Nov 09

This week, Europe decides what to do with illegal file...

Dell Adamo XPS

Dell launches ultra-thin Adamo XPS

World's thinnest laptop will be available by Christmas

Top 10 articles, 6 November 2009

The worst Microsoft products of all time, and a USB...

Iain Thomson

Pirate Bay shutdown could be inspiring online militancy

Recent Swedish attacks raise worrying possibility

Primary Navigation