NEWS Activating a password-protected screensaver on users' desktops can provide more protection from unauthorised access than strong network login passwords, according to security firm TruSecure. The company claims organisations are wasting money on expensive security measures and procedures that can actually increase vulnerability to attackers instead of reducing it. Jay Heiser, chief analyst at TruSecure, told ZDNet UK that most unauthorised access occurs inside an organisation because users leave their desktops unattended and unprotected. "When someone sits down at a logged-in terminal they are able to rifle through that user's files and send or read their email. Screen-locking - activating a password-protected screensaver - is one of the most effective things you can do internally," he said. Heiser said that when users are given long and complicated passwords, they are more likely to write them down. "They are going to write them down on Post-it notes next to their monitor or stick them under the keyboard," he said. Research has found that companies are hit hard in the pocket when their employees forget their passwords and call the corporate helpdesk. Earlier this year, analyst group Meta calculated that each of these calls costs the company approximately $25. According to Heiser, regardless of whether passwords are complex or simple, there are lots of tools available on the web that can crack them. A better policy is to use a hardware device, such as a token or smartcard to reinforce access rights. He said: "You always know if your hardware has been stolen but you don't know if your password has been stolen." Heiser also dismissed the practice of updating anti-virus signatures every day because it is a reactive action rather than a proactive one. "There is not a huge difference in updating anti-virus signatures on a daily basis and on a monthly basis. Antivirus software is a band-aid - it isn't worth spending large amounts of time and effort optimising it because there are other ways to reduce risk for a lower cost," he said. Munir Kotadia writes for ZDNet UK
Screensavers more secure than network passwords
And forget daily anti-virus updates, claims security firm
Post your comment
In order to post a comment you need to be registered and logged in.
You can also log in with Facebook. Log in or create your silicon.com account below
Get silicon.com's daily newsletter
-

Enter your email to register
Featured white papers
-
CIO challenges: Bringing your iPad to work
The arrival of personal technology in the office is a challenge for all organisations. The technology is here, but not...
-
2012 Olympics: Is your business prepared?
Athletes prepare for all kinds of conditions and problems in competition. With the London-hosted Olympics fast...
-
10 safety tips for business in 2012
Remember 2011? It seems like so long ago, with the speed of IT moving faster all the time. Data keeps growing, social...
Keep in touch with silicon.com
-
Connect with silicon.com on Facebook
Discuss the news of the day with the silicon.com team
-
Follow silicon.com on Twitter
Get regular updates from the silicon.com editors
-
Join the silicon.com LinkedIn networking group
Network with your peers and share expertise
Latest jobs
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
silicon.com newsletters
-
Stay up to date with silicon.com newsletters
Keep up with the latest news and analysis from silicon.com with our free email newsletters






Comments
There is 1 comment. Join the discussion
1. anonymous
Ideal solution is madeSafe Vault which is a secure online storage and backup for passwords and data. The encryption is 448 bit and if users all passwords were put in the Vault there would be no worries about post its or anyone finding it. There is whole range of products even worlds first anti-paedophile pk.