|
|
|
|
|
by mrbungie
369 days ago
|
|
That's what baffles me. Somehow security NEVER acknowledges that security theater, cognitive overload and constant friction makes users more inclined to make bad decisions, repetition over months make this even worse. Hackers need just one chain of tired persons to breach a system. Sometimes length(chain) = 1, that's when bad things happen. Anecdotal PS: I used to work at a bank and had to rotate my password monthly (sometimes even more, because there were unfederated systems that required another password, also with rotation). Eventually all my passwords became [short STRING] + [autoincremental INT]. We had MFA, so it didn't matter that much, but that makes it even more hilarious. |
|