Password awareness critical

1 June 2019 Information Security, Security Services & Risk Management

If you knew just how valuable your identity was, would you pay more attention to securing it? A recent Kaspersky Lab study revealed that digital identity data and information holds significant value to cybercriminals – who craft ways of gaining this data without potential victims’ knowledge and exploit it on the dark Web for as little as $50. This reality raises the need to create more awareness about the importance of password protection and stronger password controls in the digital world.

Says Riaan Badenhorst; general manager of Kaspersky Lab in Africa, “While the digital world brings with it many conveniences that are enjoyed without a second thought, it also poses many risks to people. Turning a blind eye to these risks can be detrimental and lead to devastating effects – just think about a stolen identity and the impact this can have. And people often don’t realise the value of their digital identity/data to the cybercriminal world and how this is used on the dark Web – thus don’t pay enough attention to the need for strong password protection.”

While it is often common security practice to change passwords regularly to mitigate possible risk, this method alone is not always effective. The password problem is twofold; firstly, for effective protection, passwords need to be difficult to guess. Secondly, to be usable, passwords need to be easy to remember. While changing passwords regularly does have some positive impact on the first aspect here, regular changes drastically complicate the ability to remember passwords.

Continues Badenhorst, “It is human nature to not like the fact that one has to remember a variety of long, complicated passwords for various devices and online accounts. This often results in an individual creating one strong password for all accounts or using the same password and changing only one symbol or number for each device or account to make it easier to remember. The problem with this is that the passwords lack uniqueness and if compromised puts all devices and accounts at risk.”

A unique password is made up of two properties – a set of characters used and the length. The more diverse the characters and the longer the password, the stronger and better. Uniqueness, however, and considering how the digital world is evolving, can also come in the form of individual biometrics, which can provide an additional layer of security, especially for devices.

Says Pine Pienaar, MD of Afiswitch, “Incorporating biometrics into password procedures and in devices where viable, is a growing global practice as part of managing device access and control. While there will likely always be a place for text-based passwords that one would have to input, character-based biometric passwords will naturally progress in the digital realm, where we are already starting to see a significant uptake of biometrics-based features, for example, using fingerprints and facial recognition for the purpose of unlocking devices.”

“Based on the success of these use cases and the growing consumer demand for simplified mechanisms to protect their identities, personal data and password-secure their devices, we expect these solutions to become more mainstream and used as an additional line of defence in the war against cybercrime,” continues Pienaar.

While consumers may be able to look forward to a possible future reliant on biometric-based passwords, until this future comes to fruition, password awareness and safety measures must be taken to protect identities in the digital realm.

Concludes Badenhorst, “Passwords are there for a reason – they should not be viewed as a mechanic that causes frustration. Rather they aim to protect what matters to you most – your data. And with the opportunity to invest in password manager solutions, creating and remembering strong passwords doesn’t need to be a chore.”





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Security has an identity problem
Access Control & Identity Management Information Security
Cybersecurity discussions have mainly focused on defence, including stronger firewalls, tighter network controls, and better endpoint security. However, in today's world, those traditional defences have become less relevant.

Read more...
Buying more security tools is not building a defence
Information Security
Sophisticated attacks are specifically engineered to bypass individual security tools, and companies absorbing the damage are those who have confused procurement with protection, says Richard Frost from Armata Cyber Security.

Read more...
Modernising ‘smart’ ports
IoT & Automation Information Security Transport (Industry) Logistics (Industry)
A modern port is part of a much larger digital trade ecosystem where all systems need to work together. If one part of that ecosystem is disrupted, the impact can quickly move through the supply chain.

Read more...
Reinventing cybersecurity
NEC XON News & Events Information Security Commercial (Industry)
NEC XON helps a workforce solutions leader reinvent cybersecurity with an AI-enhanced XDR solution to keep pace with increasingly devious cyberattack techniques, including fileless malware, lateral movement, and credential misuse.

Read more...
Hold the line
BlueVision Information Security Editor's Choice
While most businesses are still focused on guarding the wall, the perimeter today has moved to the login screen, according to Christo Coetzer, founder and managing director of BlueVision Technologies.

Read more...
AI assistants learn bad workplace habits
AI & Data Analytics Security Services & Risk Management
An employee under pressure at a logistics firm finds a productivity-boosting shortcut. Instead of manually parsing a 40-page supplier contract, they paste the confidential PDF into a public generative AI tool for a quick summary.

Read more...
Attackers are turning AI to their advantage
Information Security AI & Data Analytics
ESET's H1 2026 Threat Report analysed around 900 000 AI skills and found more than 3000 to be outright malicious, exposing a fast-growing attack surface for organisations experimenting with AI.

Read more...
Shadow AI: The next evolution of Shadow IT
AI & Data Analytics Security Services & Risk Management
Today, as AI gains traction in all aspects of life and business, African organisations face a new challenge, known as ‘Shadow AI’, where employees at all levels make use of AI without considering the potential impact.

Read more...
BlueVision launches Fusion Cloud
BlueVision Information Security Products & Solutions
Most businesses have moved to the cloud, including Microsoft 365, Azure, AWS and more, and in doing so assume they're protected because they're using a reputable platform; however, the reality is somewhat different.

Read more...
Free live travel risk map covering multiple countries
News & Events Security Services & Risk Management
Most widely cited travel risk maps are published once a year as static documents, but risk conditions do not follow a publishing calendar. The Sicuro map draws on official travel advisories from the ...

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.