Personal tools
You are here: Home wikidblog Password surveys again
« August 2008 »
Mo Tu We Th Fr Sa Su
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Recent comments
Re:Security and Oil admin Apr 25, 2008
Re:Security and Oil Paul feet Apr 24, 2008
Re:100% open source admin Apr 22, 2008
Re:100% open source Adam Apr 22, 2008
Re:Capital Gains Tax Rates and Entrepreneurs Lance Oct 23, 2007
 

Password surveys again

Both RSA and Versign have done sponsored surveys on password usage and abusage by users. The first one - where they offered candy bars for passwords, was funny, but it is increasingly clear that these surveys are more about getting press than being scientific. Here are some hightlights from Verisign's survey:

  • Two out three three people (180 of 272) approached in a downtown San Francisco street by researchers were happy to provide their password in exchange for a coffee gift card.
  • 57 per cent reported having four or more passwords
  • 79 per cent reported using the same password for multiple websites or applications

    I think that most people assume that just having the password isn't enough to get access. I wonder if the surveyors also asked the people where they worked and their name. I also wonder if they gave their actual password, or just lied. I wonder how many people would be willing to give up the ATM PIN for a candy bar?

    Interestingly, unlike WiKID Strong Authentication neither Verisign's nor RSA's token systems can handle multiple websites or applications without some type of federated identity.

    Survey results can all be seen at the reg: http://www.theregister.co.uk/2005/05/06/verisign_password_survey/

  • The URL to Trackback this entry is:
    http://www.wikidsystems.com/WiKIDBlog/32/tbping
    Add comment

    You can add a comment by filling out the form below. Plain text formatting. Comments and Trackbacks are moderated.

    (Required)
    (Required)
    (Required)
    (Required)
    This helps us prevent automated spamming.