Do Employees Open Your Network to the Bad Guys by Using Hacked Passwords?



Breached Passwords  A whopping 25% of employees are using the same password for all logins. What if that password is available on the dark web? A massive amount of passwords are compromised due to data breaches and used by the bad guys for attacks. Are any hacked passwords in use within your organization?

Surprising statistics from SecureLink recently discovered that 80% of Data Breaches leveraged compromised passwords. This startling insight should serve as a warning but yet, the trend continues on. 

Using breached passwords puts your network at risk. Password policies often do not prevent employees using known bad passwords. Making your users frequently change their passwords isn’t a good solution either. It only takes one compromised password match for the bad guys to gain access.

It's important to be cognizant of how compromised credentials can lead to data breaches. If you utilize a remote access or remote support tool, the only way to ensure your network is not compromised if you never give them out in the first place to vendors. Don't be negligent to the permit access to your users, and by all means do NOT grant access of all files to the company. 

There are several other ways to prevent and mitigate data breaches due to compromised passwords. To truly ensure your users know how to stay secure, continual security awareness training is essential for them to apply these skills to their day-to-day operations. 


How vulnerable is your network to hacked user passwords?

25% of employees use the same password for all logins. What if that password is available on the dark web? A massive amount of passwords are compromised due to data breaches and used by cybercriminals for attacks. KnowBe4’s free Breached Password Test (BPT) checks to see if your users are currently using passwords that are in publicly available breaches associated with your domain. BPT checks against your Active Directory and reports compromised passwords in use right now so that you can take action immediately!

BPT-1Here's how it works:

  • Checks to see if your company domains have been part of a data breach that included passwords
  • Checks to see if any of those breached passwords are currently in use in your Active Directory
  • Does not show/report on the actual passwords of accounts
  • Just download the install and run it
  • Results in a few minutes!

Check Your Passwords

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

https://www.knowbe4.com/breached-password-test

Topics: KnowBe4



Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews