Lessons Learned from The Sarah Palin Email Hack

CYBERSPACE — The hack of GOP vice-presidential nominee Sarah Palin's email provides a lesson to computer users everywhere: common password protection isn't that great.

The hacker claiming to be behind the email invasion posted on the Internet message board 4Chan.org explained how he retrieved Palin's password information. It sounded all too easy.

First, the hacker used the password retrieval function associated with Palin's Yahoo account and answered two security questions: The governor's birthday and her home ZIP code, both of which he said he was able to find through simple Google searches.

After that, the hacker encountered a more challenging security question: Where did the governor meet her husband?

But once again, a trip to YouTube or some other video-sharing site was all the hacker needed. Gov. Palin herself recounted during her acceptance speech at the Republican national convention that she met her husband at Wasilla, Alaska, High School.

What does this mean for the rest of us? Roger A. Grimes, a security expert who writes for InfoWorld.com, said that no amount of good programming can make up for lousy security questions.

"If your password reset feature is weak (and most are), then the security of your account has nothing to do with anything else besides those few questions," he said.

"It doesn't matter how good the vendor's other security features are, it doesn't matter how long and complex your password is, it doesn't matter how secure their coding is and whether they use SDL programming,” Grimes added. “All that matters is how common the questions and answers are.

What's the solution? One possible answer is to treat every security question like another password field.

"When they ask you for your dog's name, say something like 'Im5n$?aTuy' and put that for all your password reset answers," Grimes said.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Seoul Authorities Force Cancellation of Adult Expo for 'Distorting Perceptions of Sex'

Seoul authorities repeatedly prevented 2024 KXF The Fashion — a popular Korean adult industry expo featuring Japanese AV performers — scheduled for this week from finding a suitable venue, leading organizers to cancel the event.

FSC to Hold Discussion on Adult Industry Rights With Congressional Candidate Joe Cohn

Free Speech Coalition will hold a virtual discussion with Joe Cohn, a strong advocate for the adult industry’s rights who is running for Congress in November.

Sophie Dee, Ricky Johnson to Deliver 'XBIZ Talks' at Miami Conference

XBIZ is pleased to announce that Sophie Dee and Ricky Johnson will each deliver an “XBIZ Talk” at next month’s XBIZ Miami conference

FSC to Host Webinar on Derisking and the Adult Industry

The Free Speech Coalition (FSC) is hosting a webinar on derisking, titled "Derisking: Examining Its Impact on the Adult Industry's Access to Banking," on April 24 at 11 a.m. (PDT).

Democratic Governor Fails to Veto Kansas Age Verification Bill

Kansas’ Democratic governor, Laura Kelly, expressed strong reservations about the state’s version of the age verification bills being sponsored around the country by anti-porn religious conservative activists, but ultimately decided not to veto it, allowing the legislation to become law by default without her signature.

FSC's Alison Boden Testifies Against California Age Verification Bill, Urges Action to Defeat It

Free Speech Coalition Executive Director Alison Boden testified Tuesday against AB 3080, California’s version of the age verification bills being sponsored around the country by anti-porn religious conservative activists.

Phoenix Marie Sues Aylo, Danny D Over Incident on Digital Playground Set

Phoenix Marie has filed a lawsuit against Aylo, performer/producer Danny D and other defendants, alleging she has suffered defamation and damage to her career over a 2023 incident on a Digital Playground set in Spain.

New Premium Creator Platform 'Lemon Social' Launches

Premium creator platform Lemon Social has debuted.

MomPOV Producer Pleads Guilty in GirlsDoPorn Case

MomPOV producer Doug Wiederhold, who was formerly the partner of GirlsDoPorn owner Michael Pratt as well as the first male talent for GDP, pleaded guilty Thursday to a federal conspiracy charge.

Streamate Exec Liz Rek Joins FSC Board

The Free Speech Coalition board of directors has tapped Streamate executive Liz Rek as its newest member, effective immediately.

Show More