New Research: Some Tough Questions for ‘Security Questions’

Source: googleonlinesecurity.blogspot.com

New Research: Some Tough Questions for ‘Security Questions’

 

Findings: "Secret questions are neither secure nor reliable enough to be used as a standalone account recovery mechanism. That’s because they suffer from a fundamental flaw: their answers are either somewhat secure or easy to remember—but rarely both."

 

By: Elie Bursztein, Anti-Abuse Research Lead and Ilan Caron, Software Engineer (via Google Online Security Blog)

See on Scoop.itNebraska and National Consumer Protection

Advertisements