The enemy knows the system.
Chapter 20Readable Passwords
Suppose you receive a phone call from a man using one of the applications you support. The caller is having trouble logging in.
“This is Pat Johnson in Sales. I must have forgotten my password. Can you just look it up and tell me what it is?” Pat sounds a bit sheepish but also strangely in a hurry.
“I’m sorry, I’m not supposed to do that,” you answer. “I can reset your account, and that’ll send an email to the address you registered for your account. You can use the instructions in that email to set a new password.”
The man becomes more impatient and assertive. “That’s ridiculous,” he says. “At my last company the support staff could look up my password. Are you ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access