Don’t take passwords lightly

Listen to this sane advice from this renowned techie columnist Bob Cringely, who has an intelligent ear to the ground all the time, or perish!

CHANGE YOUR DAMNED PASSWORDS!! Most people don’t do this — ever. They have one or two passwords they use for everything, often associated with one or two user names. If a system forces a password change they’ll move to password B in hopes that when the next move is forced they can move back to password A. If you have an eight-character password that mixes numbers, letters, and non-alphanumeric characters in various combinations of upper and lower case — in other words a REALLY GOOD password — I can pretty much guarantee you’ve been using that exact same password since 1998. People are lazy. People don’t want to learn arcane eight-character passwords on a regular basis.

But identity thieves aren’t so lazy, especially when they have technology to help them. They can start a sweepstakes website that requires only free registration to win that cruise of a lifetime to Bora Bora. And in doing so the thieves can know that a majority of registrants will use a username and password combination that they also use at a lot of other sites, like bank and brokerage accounts. Not only don’t they need to actually award the cruise, they don’t even have to break into your bank account in order to benefit from the username/password combo. They just sell that information to another crook.

That crook knows your name, address, and likely username and password. Forty percent of the people in your town use the same bank. Fifty percent of his stolen usernames and passwords are valid. Forty percent of bank customers use online banking. Add this all together and that crook has more than enough information to raid the bank accounts of enough folks to make his day and ruin theirs.

It doesn’t take just a fake website to accomplish this kind of phishing expedition. There are thousands — probably tens of thousands — of web operations that require user sign-ons but don’t do anything to protect the user database from being stolen by employees. “We’re not selling anything,” they tell themselves, “so it doesn’t matter.”

It matters.

Half my credit card accounts now require me to go through an elaborate e-mail validation scheme if I try logging in from a new IP address or from a computer lacking the proper cookie. Half don’t require this. The half that do were probably the targets of some huge and successful crime spree — a spree we never heard of because it was never made public. Billions of dollars are ripped off this way each year from banks and other financial institutions but we never hear about it because that might encourage more crime.

So CHANGE YOUR DAMNED PASSWORDS and put an end to this kind of scam. Perhaps remembering new character strings will help to stave off Alzheimer’s.

So, don’t forget to change your passwords every Tuesday, and remember the new passwords – may be it is a good idea to tattoo them between your toes!!

Tagged on: , ,

10 thoughts on “Don’t take passwords lightly

  1. Sue

    Billions of dollars are ripped off this way each year from banks and other financial institutions but we never hear about it because that might encourage more crime

  2. Pingback: eeyy » Don’t take passwords lightly

  3. Gelatin Trick

    Today, I went to the beachfront with my children. I found a sea shell and gave it to my 4 year old daughter and said “You can hear the ocean if you put this to your ear.” She put the shell to her ear and screamed. There was a hermit crab inside and it pinched her ear. She never wants to go back! LoL I know this is completely off topic but I had to tell someone!

  4. gelatin trick

    naturally like your web site but you have to check the spelling on quite a few of your posts. Several of them are rife with spelling problems and I find it very troublesome to tell the reality nevertheless I will surely come again again.

  5. bandar slot gacor

    Thank you, I’ve recently been searching for information about this subject for ages and yours is the best I’ve discovered till now. But, what about the bottom line? Are you sure about the source?

  6. fdertol mrtokev

    Hi there, just became aware of your blog through Google, and found that it’s really informative. I am gonna watch out for brussels. I will appreciate if you continue this in future. A lot of people will be benefited from your writing. Cheers!

  7. abogados de ley limón en california

    Admiring the time and energy you put into your blog and detailed information you present. It’s great to come across a blog every once in a while that isn’t the same outdated rehashed material. Fantastic read! I’ve saved your site and I’m adding your RSS feeds to my Google account.

  8. Javier Jacomet

    You can certainly see your enthusiasm within the work you write. The world hopes for more passionate writers such as you who are not afraid to say how they believe. At all times go after your heart.

  9. alquileres en Montevideo

    I was very pleased to find this web-site.I wanted to thanks for your time for this wonderful read!! I definitely enjoying every little bit of it and I have you bookmarked to check out new stuff you blog post.

Leave a Reply

Your email address will not be published. Required fields are marked *