English | 简体中文 | 繁體中文 | 한국어
  Home | Services | Partners | Events | About us | Contact us | Login
Thursday, May 24, 2012  
Wednesday, 14 December 2011, 21:37 HKT
Share:

Source: Imperva Inc.
Imperva Releases Detailed Password Cracking Analysis
Data Security Firm's Report Highlights How Enterprises Must Implement Stronger Password Security Systems to Counter More Sophisticated Hacking Techniques

Redwood Shores, CA, Dec 14, 2011 - (ACN Newswire) - Imperva (NYSE: IMPV), a pioneer and leader of a new category of data security solutions for high-value business data in the data center, today announced a new report detailing how hackers crack passwords. The report, Enterprise Password Worst Practices, is a sequel to Imperva's 2009 report, Consumer Password Worst Practices.

The report is available here.
http://www.imperva.com/download.asp?id=293

"Instead of consumers, we believe responsibility rests on enterprises to put in place proper password security policies and procedures as a part of a comprehensive data security discipline," explained Imperva CTO Amichai Shulman. "Passwords should be viewed by security teams as highly valuable data. We hope this paper guides enterprises to rectify poor password management practices."

The reports details:

- How hackers bypass security controls to protect passwords.
- Popular, key online resources hackers employ, including one website containing 50 billion possible password permutations.
- Key steps that Imperva recommends IT teams within enterprises undertake in order to mitigate password breaches. Imperva's recommendations include:
-- Using passphrases: Allow users to choose longer passwords which are easier to remember. Passphrases provide the necessary length yet do not require the user to write down the secret on a note left on the worker's desk.
-- Enforce strong password policy. This doesn't mean just applying restrictions on the character types, but also by comparing against dictionaries used by attackers. In fact, Hotmail recently banned the usage of common passwords. This also means defining and banning site-specific passwords, as well as banning numerical or keyboard sequences.
-- Use of a special form of encryption known has "salted digests." A salted value, which is a random value pre-pended to a password before it is encrypted, should increase the cost of guessing the password so that financially-motivated hackers will not make such an investment.

About Imperva

Imperva is a pioneer and leader of a new category of data security solutions for high-value business data in the data center. With more than 1,500 end-user customers and thousands of organizations protected through cloud-based deployments, Imperva's customers include leading enterprises, government organizations, and managed service providers who rely on Imperva to prevent sensitive data theft from hackers and insiders. The award-winning Imperva SecureSphere identifies and secures high-value data across file systems, web applications and databases. For more information, visit www.imperva.com , follow us on Twitter or visit our blog.


This announcement is distributed by Thomson Reuters on behalf of Thomson Reuters clients.

The owner of this announcement warrants that:
(i) the releases contained herein are protected by copyright and other applicable laws; and
(ii) they are solely responsible for the content, accuracy and originality of the information contained therein.

Source: Imperva Inc. via Thomson Reuters ONE

Copyright (c) Thomson Reuters 2011. All rights reserved.

Topic: Press release summary

http://www.acnnewswire.com
From the Asia Corporate News Network


Copyright © 2012 ACN Newswire. All rights reserved. A division of Asia Corporate News Network.

 ACN Search:
   
Imperva Inc.
May 23, 2012 16:05 HKT
Imperva Report Examines Dangers of User-Generated Content in Light of Military Singles Hack
May 17, 2012 20:10 HKT
Imperva Enhanced Dynamic Profiling for Its Web Application Firewall
Apr 24, 2012 17:05 HKT
Imperva Report Details Automated Web Application Attacks
Apr 2, 2012 15:05 HKT
Imperva Deconstructs Local and Remote File Inclusion Attack Vectors
Feb 27, 2012 10:33 HKT
Imperva Analyzes High-Profile 'Anonymous' Attack
Jan 26, 2012 16:09 HKT
Imperva Inc.: Business Logic Attacks Attractive to Hackers, Imperva Finds
Dec 28, 2011 18:05 HKT
Imperva Named Finalist in Info Security Products Guide's Global Excellence Awards
Dec 7, 2011 19:13 HKT
Imperva Enhances U.S. Government Agencies Data Protection Efforts
Dec 6, 2011 18:15 HKT
Imperva Predicts Top Nine Cyber Security Trends for 2012
Nov 10, 2011 19:06 HKT
Imperva Announces Full Exercise of Underwriters' Option to Purchase Additional Shares
More news >>
 News Alerts
 Follow us on Twitter  
 Become a fan on Facebook  
 Subscribe RSS Feeds  
Copyright © 2012 ACN Newswire - Asia Corporate News Network
Home | About us | Services | Partners | Events | Login | Contact us | Privacy Policy | Terms of Use | RSS
US: +1 800 291 0906 | Beijing: +86 10 8405 3688 | Hong Kong: +852 2217 2912 | Singapore: +65 6304 8926 | Seoul: +82 2 737 3600 | Tokyo: +81 3 5791 1818