#credential-security

[ follow ]
fromThe Hacker News
3 days ago

Password Reuse in Disguise: An Often-Missed Risky Workaround

Near-identical password reuse occurs when users make small, predictable changes to an existing password rather than creating a completely new one. While these changes satisfy formal password rules, they do little to reduce real-world exposure. Here are some classic examples: Adding or changing a number Summer2023! → Summer2024! Appending a character Swapping symbols or capitalization Welcome! → Welcome? AdminPass → adminpass Another common scenario occurs when organizations issue a standard starter password to new employees, and instead of replacing it entirely, users make incremental changes over time to remain compliant.
Information security
fromTheregister
5 months ago

CISA, USCG make example out of organization they audited

"The storage of local admin credentials in plaintext scripts across numerous hosts increases the risk of widespread unauthorized access, and the usage of non-unique passwords facilitates lateral movement throughout the network."
Privacy professionals
Privacy technologies
fromZDNET
8 months ago

Your password manager is under attack: How to defend yourself against a new threat

The shift towards passwordless security heightens reliance on password managers, but they face increasing threats from hackers.
[ Load more ]