Section 17.159 Password Security Flashcards
Objectives 2.4 Given a scenario, you must be able to analyse indicators of malicious activity. Objectives 4.6 Given a scenario, you must be able to implement and maintain identity and access management.
Password Security
Measures the effectiveness of a password in resisting guessing and brute-force attacks
Estimates the number of attempts needed to guess a password correctly
Group Policy Editor for Password Policies
Used to create password policies in Windows
■ Available for local machines, and global policy orchestrator can be used in domain environments
Five Characteristics of Password Policies
Password Length
● Longer passwords are harder to crack
● Strong passwords should be at least 12 to 16 characters
● Longer passwords increase security exponentially
Five Characteristics of Password Policies
Password Complexity
● Combines uppercase and lowercase letters, numbers, and special characters
● Complexity makes passwords resistant to brute force attacks
● The more character choices, the more secure the password
Five Characteristics of Password Policies
Password Reuse
● Avoid using the same password for multiple accounts
● Reusing passwords increases vulnerability
Five Characteristics of Password Policies
Password Expiration
● Requires users to change passwords after a specific period
● Overemphasis on expiration can lead to poor password choices
Five Characteristics of Password Policies
Password Age
● Password age refers to the time a password has been in use
● Older passwords have a higher risk of being compromised
Password Managers
Tools for storing and managing passwords securely in one centralised location. They generate strong passwords for you.
Password Managers Key Features
Password generation
Password managers create unique strong passwords for accounts to prevent reuse and enhance security
Password Managers Key Features
Auto-fill
Password managers autofill login details, sparing users the need to recall or input information manually
Password Managers Key Features
Secure sharing
Password managers provide secure methods to share passwords without directly disclosing the password itself
Password Managers Key Features
Cross-platform access
Password managers offer cross-device compatibility, allowing access to passwords from any location or device
Passwordless Authentication Methods
Provide a higher level of security and better user experience
Passwordless Authentication Methods
Biometric Authentication
Uses unique biological characteristics
Passwordless Authentication Methods
Hardware Token
Generate ever-changing login codes