Password Managers Are Vulnerable
I created a GIF image using my title texts, and photos by Towfiqu barbhuiya and regularguy.eth on Unsplash.

Password Managers Are Vulnerable

Passwords are indispensable in today's networked world.

In this networked world of the Internet, passwords are indispensable. Passwords are needed to login into any online accounts, such as your webmail, banks, credit cards, centralized cryptocurrency exchanges, and even the content publishing platforms, and so on.

Many people use the same password for all of their online accounts. It is sometimes called "reusing the same password" for many online accounts.

All the people who use the same single password for many online accounts, do it because it is difficult to remember many different passwords for different online accounts. If these people, who reuse the same password for many accounts, lose the password to hackers, they lose access to all their accounts in one go!


What is a password manager?

  • Software professionals developed password managers, which are software applications that can generate very large streams of random text passwords.
  • These synthesized passwords can be encrypted and stored on the computer device, and or on an Internet cloud server by the password manager application software.

The password manager software provides a master password for the user to lock/unlock the encrypted passwords. Basically, users can access hundreds of online accounts by entering a single master password.

Thus, password managers provide users the much-required convenience of accessing hundreds of online accounts by a single master password.


Password managers are as vulnerable as reusing passwords.

  • As a long-time researcher of information security, I have a serious question about whether password manager software improves security or lowers security.

The proponents of password manager applications say that reusing the same password is too vulnerable because if the single password is compromised, all the online accounts are compromised for good.

  • But, the password manager applications secure multiple online accounts with a single master password. Is it not equivalent to reusing the same passwords for many online accounts?
  • The master password of a password manager will be an easy hole in the security bag or a single point of failure! If hackers can steal/hack the master password, they can access hundreds of online accounts of the user!

Are the sellers and proponents of password managers not seeing that they are committing the same mistake, i.e., reusing the same single master password to secure hundreds of online accounts?


Bringing it altogether

Password manager applications provide the convenience of accessing hundreds of online accounts with a single master password.

  • Remember that security ability and convenience are inversely proportional.
  • So, the convenience of password managers brings down the security of online authentication.

The password managers are equally vulnerable to reusing the same password for many accounts because they reuse single master passwords for many online accounts.


Postscript

I proposed a solution to surmount this problem, without falling into the trap of "single point of failure" of password managers, and utilizing the power of human brain memory.

And, it does not require any licensing fees or installation of any software application. The password security solution is absolutely free.


------------

About me

I am a researcher and contribute to the overlapping areas of STEAM (Science, Technology, Engineering, Arts, and Mathematics). I develop cybersecurity and information security solutions, specifically graphical authentication security.

Text Copyright ? 2022 Debesh Choudhury — All Rights Reserved.

Cheers!

Cover:?I created GIF using my title texts, and photos by?Towfiqu barbhuiya?and?regularguy.eth?on?Unsplash.

All other images are either drawn/created by myself or credited to the respective artists/sources.

Disclaimer: All texts are mine and original. Any similarity and resemblance to any other content are purely accidental. The article is not advice for life, career, or business. Do your research before adopting any options.

Join me at?Odysee,?Twitter,?noise.cash,?read.cash, and?Facebook

Kolkata, Tuesday, August 16, 2022.

#passwords #cybersecurity?#learningtimes?#debeshchoudhury

Roopa M Pai

Finance & Accounts -Plantations - Engaged in Production & Manufacturing of Natural Rubber ,Tea, Cardamom and other produces

2 年

Thank you very much for sharing. Awareness helps a lot.

Jan B.

P.R. Polymath* Public Relations Parrotsec

2 年

They're making a hash of it ;-)

要查看或添加评论,请登录

Debesh Choudhury, PhD的更多文章

  • Influence of the Unfluencers: Impact on the Social Media

    Influence of the Unfluencers: Impact on the Social Media

    The Unfluencer?? LinkedIn group does not have a large number of members. But the latent power of the Unfluencers is…

    7 条评论
  • How to Broadcast You are 'Open to Work'

    How to Broadcast You are 'Open to Work'

    We often see a round badge 'Open to Work' around some LinkedIn profile photos. I wonder whether there is a better way…

    8 条评论
  • Let's Chat

    Let's Chat

    Let's Chat to Get Rid of Bad Influences and Embrace Resilience Hey, LinkedIners! I have created a special group call…

    1 条评论
  • Never Search Bank and Credit Card Help Desk Numbers on the Internet

    Never Search Bank and Credit Card Help Desk Numbers on the Internet

    If you need to search your credit card company or bank toll free help desk numbers via Internet search engine, get the…

    8 条评论
  • Improve Yourself, Don't Have to Prove

    Improve Yourself, Don't Have to Prove

    The title says it all. That should be the key in all our life grindings.

    2 条评论
  • In Life, Friendship is The Key

    In Life, Friendship is The Key

    Can we do any collaborative work successfully without friendship? Certainly not. For a collaborative project, the…

    8 条评论
  • Embrace Imperfections

    Embrace Imperfections

    Do you want to achieve something? Please don't focus on perfectionism. Why? The answer is simple.

    5 条评论
  • What is Your Mission Impossible?

    What is Your Mission Impossible?

    I want to know what you think. I am not mentioning a movie name.

    4 条评论
  • Focus on What You Want to Do

    Focus on What You Want to Do

    Forget about what you should do. We often waste a lot of time thinking about what we should do.

    6 条评论
  • How to Get Your Goals

    How to Get Your Goals

    Life is spontaneous. Humans live to enjoy life, and spontaneity is its inherent trait.

    11 条评论

社区洞察

其他会员也浏览了