Abstract:Forcing users to regularly change passwords has become a standard practice for corporate networks and some web sites. But does it it actually improve security or lead to more guessable passwords?
Bio:Bruce is a security consultant that founded the PasswordResearch.com web site over a decade ago. He aims to introduce more professionals to new and existing authentication research so they can better justify secure system design and policy choices. He has previously shared his experiences with authentication and other topics at conferences like Black Hat, SANS, and InfoSec World.
If you would like to republish one of the articles from this site on your webpage or print journal please contact IronGeek.
Copyright 2020, IronGeek