Wednesday, December 24, 2008

Your secret question is not a secret at all!

As many remember, Sarah Palin's Yahoo account was compromised in September. Today I will give some pointers and good practices to avoid being a victim yourself.

The biggest problem today is the ever so popular "secret questions". I don't understand who decided that a mother's maiden name was a good means of security, or better yet someone's birthplace or anniversary! Palin and others are likely not victims of cleaver high I.Q . hackers, but rather people resetting passwords using public information.

PREVENTION:
If your login requires you to answer "secret questions", create fictitious answers. For example.
Question: What city where you born in?
Answer: Never Never Land.
For crying out loud, don't use your real birthplace. If someone asks you for your social security number, your defenses go up. If someone asks you your anniversary, or where you were born, your defenses do no go up because those are not secrets and they are public information.

Merry Christmas everyone. I suspect many people reading this blog need to log in to their various accounts and change answer to their alleged secret questions.