Passwords are often the first layer of defense for protecting data from malicious attackers. The media has shared several stories about cyber incidents that have cost organizations millions of dollars and left victims open to identity theft, extortion and more. Weak passwords, typically eight characters or less, can be “brute forced” (broken/guessed) by attackers in mere seconds.
Here are some best practices for creating strong passwords to effectively protect your data:
- Make passwords 15 characters or more; the longer the password, the stronger it is
- Use a combination of numbers, upper and lower-case letters and symbols
- Use unique passwords for each account
-
According to CISA, a strong password would be a memorable phrase of 5 – 7 unrelated words. For example: 19MyHappy86Place@Home
Remembering and creating distinctive, complex passwords for various difficult accounts is challenging, but using a password manager makes it easier.
Password managers are easy-to-use programs that:
- Store all passwords so you don’t need to recall them from memory
- Prompt users to change the password if it is weak or previously used
- Identify if passwords are found in a breach
For more cybersecurity recommendations, visit the “Be a Cybersecurity Hero” webpage here.
|