< Back to all clusters
[TECHNOLOGY] · 6 sources

started · updated

Cybersecurity essentials: 2FA and password protection

Cybersecurity best practices emphasize the necessity of multi-layered defense mechanisms to protect digital accounts. Two-factor authentication (2FA) serves as a critical security measure by requiring two different types of evidence for login: something the user knows (a password or PIN), something the user possesses (a smartphone or security key), or something the user is (biometrics like fingerprints).

Beyond 2FA, the strength of individual passwords is vital. Experts advise against using predictable patterns, such as combining a common word with the current year, as these are easily bypassed by automated attacks. Instead, passwords should be long, random, and composed of independent words or character strings.

Using the same password across multiple services increases vulnerability to credential stuffing, where stolen data from one breach is used to access other institutions, such as universities. Additionally, users must remain vigilant against phishing attempts, where attackers use deceptive emails and fake websites to intercept personal login credentials.

Entities

University of Vienna