Password Attacks
Back to Basics
Password Security
Let's Get Technical
100

An attack that occurs when a cybercriminal uses a malicious email to steal your password

Phishing

100

Many websites require that you incorporate these into your password in addition to letters - examples include ?#!

Special characters

100

Complete this security awareness rhyme: "When it comes to passwords, ____ is stronger"

Longer

100

This month, recognized as Cybersecurity Awareness Month, is a great time to review your password security

October

200

An attack that happens when a cybercriminal tricks you into revealing your password over the phone

Vishing

200

Attempts to steal your password using fake log-in pages sent over SMS text messages is called

Smishing

200

These tools are used for the creation and encrypted storage of strong, unique passwords

Password Managers

200

When enabled, this feature on web browsers will automatically enter your password when you visit a website

Autofill

300

An attack in which an intruder attempts to crack a password using a list of common words and phrases

Dictionary Attack

300

This is the average number of passwords than an active online user is estimated to have in 2022

100

300

This additional security layer, which goes by a 3-letter acronym, can help keep an attacker out of your account even if your password is compromised

MFA (Multifactor Authentication)

300

A part of the Internet, only accessible using special software, where illegal items such as stolen passwords are bought and sold

The Dark Web

400

An attack where a cybercriminal attempts to access a single account by using automated tools to repeatedly guess every combination of letters and numbers until correct

Brute Force Attack

400

A sentence like string of words used to access an account that is longer than a password, easy to remember, and difficult to crack

Passphrase

400

This website, created by Troy Hunt, allows anyone to check for free whether their passwords have been compromised in a data breach

400

The two-way process of encoding a password in a way that only someone with a corresponding key can decode and read

Encryption

500

An attack technique that attempts to access a large number of accounts by trying lists of commonly used passwords

Password Spray Attack

500

This word is a measure of the randomness or unpredictability of your password

Entropy

500

The method for creating secure passwords that uses ordinary dice to generate random 5-digit numbers that map to a word list

DiceWare

500

The one-way process of converting a password into an unintelligible series of numbers and letters is known as

Password Hashing