825
Security Question (i.imgur.com)
you are viewing a single comment's thread
view the rest of the comments
[-] tyler@programming.dev 15 points 4 months ago

You should most likely generate a unique one for each website, but I doubt any attacker is going to go to the trouble of capturing that once and trying it again as a security answer elsewhere.

[-] FuglyDuck@lemmy.world 10 points 4 months ago

I use a password manager…. Generate a random string at 36 characters and then back off to whatever they’ll accept.

The number of idiots forcing less than 24 characters for things like that's… way too damn high. (Probably preaching to the choir here but there was an issue with windows screwing with the encryption or something “requiring” 24 instead of 12.)

[-] Frog@lemmy.ca 1 points 4 months ago

Sometimes banks ask me my answer to security questions. This ever happen to you?

[-] tyler@programming.dev 2 points 4 months ago

Yep and I just give them the long random string. They don’t care.

[-] FuglyDuck@lemmy.world 1 points 4 months ago

You… go into a bank?

For what?!

I could always show them my id or something. You know, the same one I showed to get the account.

[-] Frog@lemmy.ca 1 points 4 months ago

I've been asked my answer for security questions on the phone.

[-] dubyakay@lemmy.ca 9 points 4 months ago

The bad part is of course when it's not just the password leaking but the security questions and answers as well.

this post was submitted on 08 Aug 2024
825 points (98.8% liked)

Comic Strips

12663 readers
1574 users here now

Comic Strips is a community for those who love comic stories.

The rules are simple:

Web of links

founded 2 years ago
MODERATORS