Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Tip of the Week: Why You Should Rethink Routinely Changing Your Password

Tip of the Week: Why You Should Rethink Routinely Changing Your Password

One of the main ways to keep an account’s credentials secure is by changing them consistently. However, we ran across an article recently that plays “devil’s advocate” on the password security issue, and they made some fair points about how changing passwords too frequently can lead to decreased security as a whole.

At first, this idea may not make a lot of sense. The reason that we change passwords so often is to prevent them from being used in attacks on sensitive accounts. If hackers steal passwords that don’t work, they can’t access the accounts. IT administrators often require user passwords to be changed on a regular basis, which may prompt users to choose passwords that are easy to remember or less complex than they should be.

In reality, there are several news outlets and security websites that suggest changing passwords regularly will lead to less-secure passwords as a whole. ZDNet, The Washington Post, and WIRED magazine, all suggest that frequently changing passwords, despite its intended purpose, can lead to watered-down security. Consider this scenario: you’re using a password, but are suddenly forced to change it. Would you be more likely to create a whole new password, or use a slight variation of your current password?

The Washington Post writes, “forcing people to keep changing their passwords can result in workers coming up with, well, bad passwords.” This statement is backed by research from a study performed by Carnegie Mellon University, which found that those who feel that their organization’s password policy was annoying, created passwords that were 46 percent less secure. Additionally, users who need to update their passwords constantly often leave patterns that connect old passwords to new passwords, like replacing a letter with a number or special character.

ZDNet explains that changing passwords for the purpose of securing accounts in case of stolen credentials doesn’t make sense, simply because “stolen passwords are often exploited immediately.” The security website also cites that “regularly changed passwords are more likely to be written down (another vulnerability) or forgotten,” which only seems to add to the frustration of changing passwords on a regular basis.

The fact remains that passwords may not be the most reliable way of keeping accounts safe, but there are ways that you can make using passwords, and account security, easier to handle. One way is to use an enterprise-level password manager. You can store all of your organization’s credentials in one secure location, where they will be called from and propagate in the required fields when needed. This helps you utilize complex passwords without needing to remember all of them.

Another way that you can improve account security is through two-factor authentication. This adds a second layer of security to your accounts by requiring a secondary credential, which can be sent to a smartphone via SMS message, voicemail, an alternative email account, and more. There are also biometric or GPS-tracking two-factor authentication methods that are viable (and effective).

If you’re ready to improve your business’s security practices, reach out to Total Tech Care at 866-348-2602.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 30 April 2025
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Software Efficiency Google Business Network Security Internet Microsoft Email Malware Backup Workplace Tips Innovation User Tips Data Computer Mobile Devices IT Services Hardware Android VoIP Disaster Recovery communications Smartphones Communication Business Continuity IT Support Miscellaneous Smartphone Mobile Device Browser Small Business Network Collaboration Productivity Cybersecurity Quick Tips Business Management Users Phishing Windows Managed IT Services Upgrade Outsourced IT Ransomware Data Backup Windows 10 Data Recovery Cloud Computing Office Server Save Money Windows 10 Passwords Chrome Gadgets Virtualization Social Media Tech Term Saving Money Holiday Managed IT Services Microsoft Office Automation Managed Service Operating System Facebook Artificial Intelligence Computers Cybercrime Hacking Internet of Things Wi-Fi BYOD Health Mobile Device Management Networking IT Support Office 365 Telephone Systems Alert Information Covid-19 Information Technology Spam Managed Service Provider Remote Social Engineering Mobility BDR Recovery Employer-Employee Relationship Bandwidth Router Big Data Law Enforcement App History Mobile Computing Password Money Application Human Resources Encryption Applications Data Breach Remote Monitoring Blockchain Private Cloud Paperless Office Office Tips Training How To Managed IT VPN Apps Data Storage Patch Management Remote Computing Mobile Office Government Avoiding Downtime Data Security Wireless Flexibility Marketing Bring Your Own Device Gmail WiFi Data Management Work/Life Balance IT solutions Infrastructure Entertainment Settings Website Voice over Internet Protocol Budget Two-factor Authentication Vulnerability Windows 7 Word Google Drive Mouse HaaS Servers Risk Management Hacker Vendor Telephone System Staff Software as a Service Managed Services Save Time Machine Learning The Internet of Things Display Lithium-ion battery Remote Work Connectivity Cleaning Employee/Employer Relationship RMM Firewall USB Conferencing End of Support Virtual Reality Apple Education Physical Security Scam Safety Social Data Protection Sports HIPAA Redundancy User Error Vendor Management Keyboard Meetings Hard Drives YouTube Charger Help Desk Retail Business Technology Instant Messaging Black Market Content Management Printing Robot Access Control Excel Compliance OneNote Computer Care Virtual Assistant Biometrics Current Events Managed Services Provider Document Management Telephony Virtual Desktop Authentication Virus Solid State Drive Wireless Technology Samsung Database How to Downtime Unified Threat Management DDoS Computer Accessories Value Remote Workers SharePoint Data storage Update Electronic Medical Records Processor Automobile Spam Blocking Google Docs Hiring/Firing Identity Theft Hard Drive Customer Service Computing Infrastructure Printer Environment Going Green Bluetooth Fax Server Computing Battery Augmented Reality Shadow IT Fraud SaaS IT Consultant Legal Business Intelligence Remote Worker Internet Exlporer Worker Audit IT Management Cryptocurrency Humor Digital Signage Network Congestion eWaste Botnet PDF IT Plan Comparison Proactive IT Procurement Unsupported Software CES Workplace Strategy Net Neutrality Wearable Technology Best Practice Evernote Employees Employee/Employer Relationships Experience WIndows 7 Wire ISP Scalability Software Tips Supercomputer Windows 365 Travel Video Conferencing ROI Running Cable Business Owner Sync Printers Emails Millennials Smart Office Memory NarrowBand Wireless Charging Sales Bitcoin Shortcuts Cryptomining Search Point of Sale Personal Two Factor Authentication Workforce Supply Chain Management Virtual Private Network iPhone Netflix Root Cause Analysis PowerPoint Cables Monitoring Windows Media Player Batteries User HBO Knowledge Windows 8.1 Music Digitize Telecommuting Windows Server 2008 R2 Skype Project Management Files Nanotechnology Science Data loss Chromecast Cortana Customer relationships Managing Stress Manufacturing Outlook Leadership Digital Signature Email Best Practices Troubleshooting IT Assessment Uninterrupted Power Supply Distributed Denial of Service Start Menu Warranty Customer Relationship Management Colocation Cameras Screen Mirroring HVAC Analyitcs Loyalty Google Apps Computer Tips Managed IT Service Security Cameras Biometric Security Frequently Asked Questions Programming Monitor Analysis Virtual CIO Books OneDrive Peripheral Mobile Administrator Windows 10s Devices Cast Enterprise Content Management Digital Security Cameras Using Data 5G Antivirus Tip of the week MSP Reputation webinar Accountants Streaming Media Emergency Copiers Tech Support Employer Employee Relationship Credit Cards Quick Tip Content Professional Services Microchip Public Cloud Thought Leadership Windows 8 Printer Server Techology Password Management Laptop Assessment Password Manager Ergonomics Smartwatch IT service OLED Windows Server 2008 Customers Multi-Factor Security Development PCI DSS Virtual Machine Audiobook Tools Search Engine Twitter Tablet NIST Touchpad Television Business Mangement 2FA Fiber Optics Employee Domains Cabling Smart Tech Trending Messaging Amazon Policy Hypervisor IaaS Politics Maintenance Advertising Addiction Bloatware Public Computer Recycling Dark mode Trend Micro Default App Regulations Wiring Practices Notifications Transportation SMS Rootkit Amazon Web Services Procedure Saving Time Computer Fan Cache Tablets Safe Mode Entrepreneur Criminal dark theme Shopping Google Search IT Infrastructure GDPR Consultant Relocation Workers Hosted Computing Benefits AI Analytics Online Shopping FinTech Bing Shortcut FENG Wireless Internet Video Games File Sharing Cost Management IBM Social Network Investment Worker Commute Flash Camera Social Networking Best Available Inventory Smart Technology Specifications

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code