Passwords are everywhere in computer security. All too often, they are also ineffective. A good password has to be both easy to

admin2017-06-27  25

问题     Passwords are everywhere in computer security. All too often, they are also ineffective. A good password has to be both easy to remember and hard to guess, but in practice people seem to pay attention to the former. Names of wives, husbands and children are popular. " 123456" or "12345" are also common choices.
    That predictability lets security researchers(and hackers)create dictionaries which list common passwords, useful to those seeking to break in. But although researchers know that passwords are insecure, working out just how insecure has been difficult. Many studies have only small samples to work on.
    However, with the co-operation of Yahoo!, Joseph Bonneau of Cambridge University obtained the biggest sample to date—70 million passwords that came with useful data about their owners.
    Mr Bonneau found some interesting variations. Older users had better passwords than young ones. People whose preferred language was Korean or German chose the most secure passwords: those who spoke Indonesian the least. Passwords designed to hide sensitive information such as credit-card numbers were only slightly more secure than those protecting less important things, like access to games. "Nag screens" that told users they had chosen a weak password made virtually no difference. And users whose accounts had been hacked in the past did not make more secure choices than those who had never been hacked.
    But it is the broader analysis of the sample that is of most interest to security researchers. For, despite their differences, the 70 million users were still predictable enough that a generic password dictionary was effective against both the entire sample and any slice of it. Mr Bonneau is blunt: "An attacker who can manage ten guesses per account will compromise around 1% of accounts. " And that is a worthwhile outcome for a hacker.
    One obvious solution would be for sites to limit the number of guesses that can be made before access is blocked. Yet whereas the biggest sites, such as Google and Microsoft, do take such measures, many do not. The reasons of their not doing so are various. So it’ s time for users to consider the alternatives to traditional passwords.
It is indicated in the text that______.

选项 A、Indonesians are sensitive to password security
B、young people tend to have secure passwords
C、nag screens help little in password security
D、passwords for credit cards are usually safe

答案C

解析 推理题。A项“印尼人对密码安全很敏感”,这与第四段第三句中“those who spoke Indonesian the least”相反;B项“年轻人倾向使用安全的密码”,这与第四段第二句“Older users hadbetter passwords than young ones”相反;D项“信用卡的密码通常是安全的”,这与第四段第四句“Passwords designed to hide sensitive information such as credit—card numbers were only slightly moresecure than those protecting less important things,like access togames”相反;故排除A、B、D三项。C项“提示窗口对密码安全帮助不大”,与第四段第五句“‘Nag screens’that told users theyhad chosen a weak password made virtually no difference”相符,故选C。
转载请注明原文地址:https://kaotiyun.com/show/vfVd777K
0

最新回复(0)