Monday, July 20, 2009

Sobering security tale: 'Ecosystem' of web services makes breaches easy

It's worth reading through the detail of this anatomy of the attack on Twitter staff to understand how our all-too-human laziness in the face of dozens of individual password plus secret question systems makes for an overall weak system. It's not just individuals that are "at fault" for not following the advice to make individual, hard-to-guess passwords unique to each site, but companies/websites that act as if they are your only service.

