Section 17.159 Password Security Flashcards

Objectives 2.4 Given a scenario, you must be able to analyse indicators of malicious activity. Objectives 4.6 Given a scenario, you must be able to implement and maintain identity and access management.

1
Q

Password Security

A

Measures the effectiveness of a password in resisting guessing and brute-force attacks

Estimates the number of attempts needed to guess a password correctly

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Group Policy Editor for Password Policies

A

Used to create password policies in Windows

■ Available for local machines, and global policy orchestrator can be used in domain environments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Five Characteristics of Password Policies

Password Length

A

● Longer passwords are harder to crack

● Strong passwords should be at least 12 to 16 characters

● Longer passwords increase security exponentially

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Five Characteristics of Password Policies

Password Complexity

A

● Combines uppercase and lowercase letters, numbers, and special characters

● Complexity makes passwords resistant to brute force attacks

● The more character choices, the more secure the password

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Five Characteristics of Password Policies

Password Reuse

A

● Avoid using the same password for multiple accounts

● Reusing passwords increases vulnerability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Five Characteristics of Password Policies

Password Expiration

A

● Requires users to change passwords after a specific period

● Overemphasis on expiration can lead to poor password choices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Five Characteristics of Password Policies

Password Age

A

● Password age refers to the time a password has been in use

● Older passwords have a higher risk of being compromised

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Password Managers

A

Tools for storing and managing passwords securely in one centralised location. They generate strong passwords for you.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Password Managers Key Features

Password generation

A

Password managers create unique strong passwords for accounts to prevent reuse and enhance security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Password Managers Key Features

Auto-fill

A

Password managers autofill login details, sparing users the need to recall or input information manually

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Password Managers Key Features

Secure sharing

A

Password managers provide secure methods to share passwords without directly disclosing the password itself

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Password Managers Key Features

Cross-platform access

A

Password managers offer cross-device compatibility, allowing access to passwords from any location or device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Passwordless Authentication Methods

A

Provide a higher level of security and better user experience

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Passwordless Authentication Methods

Biometric Authentication

A

Uses unique biological characteristics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Passwordless Authentication Methods

Hardware Token

A

Generate ever-changing login codes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Passwordless Authentication Methods

One-Time Passwords (OTP)

A

Sent to email or phone for one-time use

17
Q

Passwordless Authentication Methods

Magic Links

A

One-time links sent via email for automatic login

18
Q

Passwordless Authentication Methods

Passkeys

A

Rely on device screen lock for authentication