607
submitted 10 months ago* (last edited 10 months ago) by [email protected] to c/[email protected]

This practice is not recommended anymore, yet still found in many enterprises.

you are viewing a single comment's thread
view the rest of the comments
[-] [email protected] 5 points 10 months ago* (last edited 10 months ago)

really? what's the standard for that? like how often should you be rotating your password?

I assumed many people forget their new passwords (because I often do) and become compromised than are protected by continually rotating passwords.

[-] [email protected] 6 points 10 months ago

I have over 500 passwords in my password manager. I don’t know what I’d do without it.

[-] [email protected] 2 points 10 months ago

It's one of the updated NIST recommendations, I don't recall which one but it specifically calls out no password cycling for MFA protected accounts.

this post was submitted on 20 Aug 2024
607 points (98.7% liked)

Cybersecurity - Memes

2992 readers
1 users here now

Only the hottest memes in Cybersecurity

founded 2 years ago
MODERATORS