Protect your digital accounts: new standards for safe passwords

Protect your digital accounts: new standards for safe passwords

Nowadays,

passwords are almost the most valuable information that we have on the Internet. In view of the increasing threats from cyber attacks, especially by Account Takeover Attacks, the security of passwords plays a crucial role. This type of attack is often used to gain unauthorized access to online accounts. It is therefore essential to understand how to create a safe password.

The main causes of the vulnerability of passwords include data breakdowns in which extensive lists of passwords and user names circulate on the Internet. If a user uses the same password for multiple accounts, hackers can easily find out whether a password is used elsewhere if they try to register with its known access data to another platform.

New standard for passwords of the nist

The National Institute of Standards and Technology (Nist), a relevant organization in the USA, has recently published a new draft for password requirements. These standards not only help individuals, but also organizations to ensure their security. The recommended changes serve to increase password security and include several essential points:

  • Minimal password length of 8 characters, 15 characters are recommended. longer passwords are more difficult to guess what makes it safer.
  • Maximum password length of up to 64 characters. This regulation helps to increase the safety through even more complex passwords.
  • permission of all printable ASCII signs and spaces. This leads to many possible combinations, which further increases security.
  • acceptance of Unicode sign. This enables the use of an even larger character set, which exponentially increases the number of possible password combinations.
  • No requirements for absurd password complexity. longer passwords are more effective than short, complex passwords and are often easier to remember.
  • No compulsion to change the password. This can tempt users to choose weaker passwords. Only if there is an indication of compromising should a change be required.
  • abolition of password information. This information can be both helpful and dangerous.
  • Task of the answer to security issues for the reset of forgotten passwords. This is a potential weak point that hackers can exploit.
  • Verify
  • overall password, not just a subset. It is important that the entire password is taken into account in authentication.

These new standards are the result of extensive research and discussions within the security community. They offer a solid basis for creating safe passwords and help users to better protect their digital information. In view of the threats that result from the Dark Web and Malware, it is essential to follow safe practices and regularly check whether the passwords used were compromised. For more information on these new guidelines, the report by SecurityBoulevard.com Analyzes.

Kommentare (0)