cheekybids
Well-Known Member
- Joined
- 18 Sep 2009
- Messages
- 10,999
I thought they used an existing users password, if so what exactly is poor about the security procedures?
Other than user education on cyber security, fundamentally it's down to human ineptitude not lax security; you don't change everyone's passwords when one person leaves a company.
Edit: I do agree that we should have more than just password based access i.e. 2FA; but if an existing user's password was used the flaw is with that user
The culture & training should have warned about sharing passwords, clicking on links. Awareness improves security.