Skip to main content

password-surveys-again

Both RSA and Versign have done sponsored surveys on password usage and abusage by users. The first one - where they offered candy bars for passwords, was funny, but it is increasingly clear that these surveys are more about getting press than being scientific. Here are some hightlights from Verisign's survey:

  • Two out three three people (180 of 272) approached in a downtown San Francisco street by researchers were happy to provide their password in exchange for a coffee gift card.
  • 57 per cent reported having four or more passwords
  • 79 per cent reported using the same password for multiple websites or applications

    I think that most people assume that just having the password isn't enough to get access. I wonder if the surveyors also asked the people where they worked and their name. I also wonder if they gave their actual password, or just lied. I wonder how many people would be willing to give up the ATM PIN for a candy bar?

    Interestingly, unlike WiKID Strong Authentication neither Verisign's nor RSA's token systems can handle multiple websites or applications without some type of federated identity.

    Survey results can all be seen at the reg: http://www.theregister.co.uk/2005/05/06/verisign_password_survey/

    Current rating: 1
  • Recent Posts

    Archive

    2024
    2022
    2021
    2019
    2018
    2017
    2016
    2015
    2014
    2013
    2012
    2011
    2010
    2009
    2008

    Categories

    Tags

    Authors

    Feeds

    RSS / Atom