Source |
Krebs on Security |
Identifiant |
1276176 |
Date de publication |
2019-08-21 11:58:05 (vue: 2019-08-21 15:03:02) |
Titre |
Forced Password Reset? Check Your Assumptions |
Texte |
Almost weekly now I hear from an indignant reader who suspects a data breach at a Web site they frequent that has just asked the reader to reset their password. Further investigation almost invariably reveals that the password reset demand was not the result of a breach but rather the site's efforts to identify customers who are reusing passwords from other sites that have already been hacked.
But ironically, many companies taking these proactive steps soon discover that their explanation as to why they're doing it can get misinterpreted as more evidence of lax security. This post attempts to unravel what's going on here. |
Notes |
|
Envoyé |
Oui |
Condensat |
almost already are asked assumptions attempts been breach but can check companies customers data demand discover doing efforts evidence explanation forced frequent from further get going hacked has have hear here identify indignant invariably investigation ironically just lax many misinterpreted more not now other password passwords post proactive rather reader reset result reusing reveals security site sites soon steps suspects taking these they unravel web weekly what who why your |
Tags |
Data Breach
|
Stories |
|
Move |
|