Tag: Password

SpyEye targets security blindspots

According to this article from USA Today last week, cyber-attacks are set to increase over the remainder of this year due to the widespread availability of a new SpyEye hacker toolkit. The software allows hackers or cybercriminals to control a network of up to thousands of botnets, which can then be used for spamming, DDOS […]

Mind Your PVQs

Bruce Schneier’s recent post in which he said that secret questions had reached a ‘new low’ may have shocked some casual observers, but for me it simply underlines a problem which is all too common. Personal verification questions (PVQs) and answers have been the de facto solution for forgotten passwords since the creation of email […]

Should we trust an internet browser?

Where does trust come from? In Ericka Chickowski’s article on the future of the internet’s authentication mechanisms, she raises the debate about trust being driven by our browsers instead of through our passwords. As I wrote recently on the death of the password, I thought it important to touch upon the user’s ability to make […]

Risk-appropriate authentication vs machine fingerprinting

A recent Wall Street Journal article on the insecurity of passwords confirmed what many of us have believed for some time – the days of password-only authentication are numbered. As well as highlighting the passwords that no one of sane mind should consider using (‘123456’ or ‘password’, anyone?) it also considers some of the various […]