Password Policies Remain Archaic Across Organizations

frogboy

In memoriam 1961-2018
Thread author
Verified
Top Poster
Well-known
Jun 9, 2013
6,720
Despite the clear and present danger that weak passwords pose to organizations, many remain focused on implementing technology based on policy, not the user, to address the problem.

A study from LastPass and Ovum reveals that more than half of IT executives surveyed rely on employees alone to monitor their own password behavior. About 61% of IT executives surveyed rely exclusively on employee education to enforce strong passwords, so employees are essentially on their own, with no technology in place to enforce any password strength requirement.

The study further revealed that 76% of employees say they experience regular password usage problems, and more than a third of users need password-related help desk support at least once every month.

Defense against password sharing is far too weak as well. When asked how they guard against unnecessary password sharing, 64% of IT execs surveyed had no technology in place, and only 14% had automated control facilities in place to know when it is happening.

“This research has clearly identified an urgent need to close the password security gap,” said Andrew Kellett, principal analyst, Infrastructure Solutions at Ovum. “Far too many organizations are leaving the responsibility for password management to their employees and don’t have the automated password management technology in place to identify when things are going wrong.”

Read More. Password Policies Remain Archaic Across Organizations
 

Weebarra

Level 17
Verified
Top Poster
Well-known
Apr 5, 2017
836
And then they wonder how they get into trouble :mad: that is a pretty basic thing to do, heck they could even do it for free, it doesn't cost anything to generate strong passwords but perhaps they should shell out a few bucks to keep them safe and manage them.


Our company requires to change passwords once a year. We have to stick them to monitors afterwards, so everyone would know, what they are. :D

Fabulous strategy @TairikuOkami where do you work again, just in case i happen to walk past one day, lol.
 

TairikuOkami

Level 37
Verified
Top Poster
Content Creator
Well-known
May 13, 2017
2,641
Fabulous strategy @TairikuOkami where do you work again, just in case i happen to walk past one day, lol.
The biggest employer in my country, slovak post. And we can not use the same password again, it also has to contain upper, lower cases and numbers, but luckily, it is not very smart algorithm, so we cycle it, like Password123, Password321, 123Password, etc, but sometimes we get creative, like Henry456. :)
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top