Attend IT Blog

Attend IT Limited has been serving the Brentford area since 2003, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The Secrets to an Optimal Password

The Secrets to an Optimal Password

Passwords are effectively the cornerstone of your business’ data security. If they aren’t up to muster, your protections could crumble. Unfortunately, many users shortchange their passwords to try to make them more convenient, also making them more convenient for cybercriminals. Let’s see how we could (and should) make passwords as effective as possible.

Threats Against Your Passwords

There are two different ways that an attacker will generally try to undermine your password:

  1. Using trickery to fool your team members into sharing their passwords.
  2. Using tools and malicious software to deduce and/or steal the correct credentials.

Because of this, it is important that you ensure that all the passwords that your users have in place are strong enough to resist both methodologies.

Balancing Strength and Memorability

Considering this, it makes sense to keep the following ideas in mind as you put together your passwords and password policies:

  • If a password cannot be guessed, stolen, or deduced, the hacker will likely try any and all possible combinations until they get a match in what is called a brute force attack.
  • A password’s security and that same password’s resilience against being brute forced are two different things.

For an optimally secured password, you must consider both of these ideas.

Using This Information to Optimize Your Passwords

There are a few standbys when it comes to password best practices that are likely familiar to you:

  • A password needs to be longer, ideally over 16 characters in length when allowed
  • These characters need to include a combination of non-consecutive letters, numbers, and symbols
  • These characters don’t represent any common words or numbers, private information, or any publicly accessible details

In addition to these, we must consider how attackers break into passwords through brute force attacks. To help avoid that outcome, your passwords need to be sufficiently complex as well.

Approximately 40 percent of passwords in use only contain lowercase letters, which enterprising cybercriminals are well aware of and use to their advantage throughout their brute force attacks. They do so by first only checking combinations of exclusively lowercase letters, making their efforts much faster. Each additional variable adds to the difficulty the hacker will have decoding it, potentially convincing them to abandon their efforts before success.

Of course, you still need to remember these passwords, so if you can’t commit it to memory it isn’t going to help you, either.

As a result, an idea has come around that a truly ideal password is made up of a few randomized words with random alphanumeric substitution and capitalization sprinkled throughout them, padded out with symbols. After all, each variable we incorporate makes the hacker’s job that much more of a challenge and could foreseeably stymie any automated efforts to bypass the password long enough to render the search impracticable.

So, in light of this, a good password might look something similar to this:

G#9s!tE8%Lp2aV&rC0

Taking this password into closer consideration, we can see why it would be nigh impossible to guess, without being impossible for a user to remember. However, its varied construction also means that a brute force method would have to go through an extensive list of permutations before eventually landing on this precise combination.

So, if you’re up to the challenge, it makes sense to consider making your passwords look something like this from here on out.

The Matter of Remembering These Passwords

Of course, using a separate example of a password like this for each account you have is a considerable feat that is daunting for most people. A password manager can make it much simpler to keep to these best practices.

A password manager is a specialized software that securely stores your active passwords for you to use, locking them behind a single master password. That way, you can keep to password best practices without having to remember dozens of different passwords.

Whether you need assistance with your IT’s security or your company’s productivity, Attend IT Limited is here to assist you. Find out what we can do by calling 020 8626 4485.

The Single Biggest Step You Can Take to Secure You...
Your Businesses Can’t Neglect Physical Security (H...
 

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Best Practices Business Computing Productivity Business Cloud Network Security Tip of the Week Data Software Hackers IT Support Efficiency Managed IT Services Data Recovery IT Services Innovation Data Backup Backup Privacy Disaster Recovery Hosted Solutions communications Phishing Saving Money Malware VoIP Small Business Hardware Email Computer Cybersecurity Collaboration Mobile Devices Internet User Tips Outsourced IT Business Continuity Workplace Strategy Cloud Computing Ransomware Business Management Upgrade Microsoft Quick Tips Users Workplace Tips BDR Training Gadgets Passwords Automation Information Technology Productivity Compliance Smartphones Internet of Things AI Remote Smartphone IT Support Communication Server Managed Service Artificial Intelligence Current Events Risk Management Wi-Fi Mobile Device Spam Employee-Employer Relationship Social Media BYOD Mobile Device Management Managed Service Provider Network Managed IT Mobility Managed IT services Budget Android Meetings Covid-19 Google Save Money Wireless Password Networking Printers Human Resources Microsoft Office Avoiding Downtime Document Management Office Printing Information Windows 7 Remote Workers VPN Remote Computing Chrome History Hosted Solution Windows Router Instant Messaging Encryption Firewall Content Filtering Computers Data Management Cost Management Windows 10 Project Management MSP Tech Term Monitoring Virtual Private Network Help Desk Time Management Remote Work Video Conferencing Laptop Marketing Recovery Telephone Systems Government End of Support Facebook Hacker Personal Information Hard Drives Solid State Drive Virtualization Battery Automobile Telephony Holiday Big Data Two-factor Authentication Audit Employer-Employee Relationship Value Saving Time Data Breach Data Storage Data Security Mobile Software as a Service Conferencing Redundancy Maintenance Devices Proactive Computing Wireless Internet Hybrid Cloud Business Technology IT Service Machine Learning Paperless Office Backup and Disaster Recovery Voice over Internet Protocol Mobile Office Manufacturing Customer Relationship Management Printer Managed Services Physical Security Mobile Computing Proactive IT Social Engineering Transportation Going Green Browser Miscellaneous Applications Private Cloud Operating System iPhone Health Money Administration Colocation Windows 10 Advertising PDF Apps Legal Wireless Technology Flexibility Update Cybercrime Black Market Shadow IT Disaster Education Application Save Time Work/Life Balance Office 365 Antivirus Entertainment HIPAA Phone System Analytics Electronic Medical Records Cleaning Hacking Smart Technology Vendor Management Samsung Company Culture App SaaS Upgrades Vulnerability The Internet of Things Dark Web Nanotechnology OneNote Business Intelligence Managed IT Service Data Protection Commerce Patch Management Regulation Professional Services Travel Word Apple User Error Data Loss File Sharing Storage Lifestyle Evernote Workers Spyware intranet Blockchain IoT Analysis Chromebook Smart Tech Connectivity Streaming Media Content Filter Management Financial Technology Gamification Students Unified Communications Remote Monitoring Wasting Money Amazon Virtual Assistant Alexa for Business WPA3 File Storage Bandwidth Vendor Telephone Access Control Utility Computing Payroll SMB Downtime E-Commerce Payment Cards Break/Fix e-waste Employees Smartwatch Development Azure Active Directory Windows Server Cybersecurty Window 10 Online Storage Fiber Optics Windows Server 2008 Copiers Voiceover Internet Protocol Business Telephone Computer Repair Troubleshooting CRM Workstations Outsource IT PCI DSS Regulations Compliance Cost Remote Working Leadership Bitcoin Finance Infrastructure Videoconferencing Streaming Customer Service Copier Authentication Hiring/Firing RMM Windows 11 Cabling Going Paperless Inventory Management Employer/Employee Relationships Outsourcing How To Microsoft Outlook Files Regulations Paperless Solutions Microsoft 365 Strategy Consulting Decision Making Ergonomics Signage Customer Experience Support Compliance IT Robot Google Drive Alert Law Enforcement Reputation Social Relocation Search Internet Exlporer Text Messaging Office Tips HaaS Video Games Scalability Humor How To Best Practice USB Virtual Reality Managing Stress Point of Sale Identity Theft Worker Commute Politics Experience Music Books Safety Emergency Worker Scam Computer Accessories Charger Computer Care Unsupported Software Television Business Strategy WiFi Unified Threat Management Consultant Touchscreen Emails Webinar IT solutions Windows 10s Hard Disk Drive iOS Computer Fan Root Cause Analysis Augmented Reality CrashOverride Settings Screen Mirroring Cast HBO IT Management IT Solutions WIndows Server 2008 Outlook Shortcut Excel Sync Adobe Licensing Tablets NFL Windows Ink Google Maps Google Docs Microsoft Excel Sports Cortana Legislation Comparison Specifications Sales Retail Gifts Credit Cards FAQ Wireless Charging WannaCry Updates Microsoft Word eWaste Device Security Tech Support Fraud Edge Ciminal IT budget Identities Language Virus Websites Data Theft App store Mobile Security Identity Data Privacy Hard Drive Google Assistant Twitter Computer Forensics Gmail PowerPoint Memory Financial Bring Your Own Device Testing Camera Projects Display Co-Managed Services Hyperlink Wasting Time Accessory Peripheral Admin Keyboard Shortcuts Security Cameras Employee 5G Medical IT YouTube OneDrive Sabotage PC Server Maintenance Investment ROI Windows Server 2008 R2 Micrsosoft Digital Signage Processor Benchmarks Myths Threats Scams Managed Services Provider Facebook Privacy eCommerce Holidays Inventory Communitications Hosted Desktop Smart Devices Keyboard Net Neutrality Internet Service Provider Workstation Telework Audits Solutions Policy Procedure Organization Innovations Reviews Biometrics Computer Tips Work Windows 8.1 Voice Supply Chain Environment Workplace Strategies Print Management Healthcare SSD Remote Management Telephone System Print Database 2FA Virtual Desktop Proactive Management eSignature Cyberattack Cameras Digital Cameras Mixed Reality Displays Stories Learning Windows PICK 3