Knowledge-based Questions – A Joke?

After the very public breach of the Apple ID recently many authentication practices have been brought into question. This recent article from the Atlantic, discusses how one of Apple’s authentication mechanisms really doesn’t do much to stop hackers. These questions were completely avoided by the hackers hacking Apple, but when in place they can still be vulnerable as the answers, such as what is your pet’s name, can be found on many social media sites. The article does go on to suggest ways to strengthen those security questions. Read  More

I also did further research and found two more supporting articles (linked below). So I guess I’ll pose this question…what are the alternatives? Which alternative do you think is the most effective?

 Supporting Articles:

Curse of the Secret Question

Why insist on using mothers’ maiden names as a question?

###

The PortalGuard software is an authentication platform which is focused on enhancing usability, while maintaining a balance between security, auditing, and compliance for your web and desktop authentication requirements. PortalGuard provides capabilities including multi-factor authentication, self-service password reset, password synchronization and single sign-on which can be seamlessly configured by user, group, or application.

http://www.PortalGuard.com

Subscribe to our newsletter: http://portalguard.com/contact_us.php

https://twitter.com/portalguard

http://pinterest.com/pistolstar/portalguard

http://www.facebook.com/pistolstar.authentication

http://www.facebook.com/pages/PortalGuard/240761992635169