Privileged passwords are more common in enterprises than previously thought
Privileged passwords exist in virtually every device or software application in an enterprise

Privileged passwords create hacking threat

Non-personal passwords offer easy way in to enterprise networks

Written by Bobby Pickering

Privileged passwords are more common in enterprises than previously thought, and their uncontrolled use makes organisations more vulnerable to hackers, a new study has revealed.

Privileged passwords are non-personal passwords that exist in virtually every device or software application in an enterprise, such as 'root' on a Unix server, 'administrator' on a Windows workstation, and 'cisco enable' on a Cisco device.

A survey by US information security vendor Cyber-Ark Software suggests that around half of the 140 enterprises that responded were using more privileged than individual passwords. 

The security loophole is exacerbated because 42 per cent of respondents said that they never update passwords regularly, which leaves organisations weak when faced with audits and hacker attacks.

"Organisations often believe that, because they have a small number of IT administrators, they cannot have many privileged passwords," said Adam Bosnian, vice president of products, strategy and sales at Cyber-Ark.

"The truth is that privileged passwords come pre-loaded on to virtually every piece of hardware and software in an enterprise and are therefore extremely common."

According to the 2006 Enterprise Privileged Password Survey, the typical enterprise contains more than 500 employees, each of whom has an Administrator account associated with their workstation.

  • Have your say
  • Send to a friend
  • Print this
  • Share

Tags:

reader comments

related articles

 

One in three firms believes rivals have their company secrets

Disgruntled workers top list of suspects 07 Jul 2010

Carbon Trust steps up regional energy-saving initiative

East Anglia latest target for Best Advice carbon-cutting campaign 05 Jul 2010

New study highlights weak password policies

Users still choosing easily compromised passwords 21 Jan 2010

related white papers

today's top stories

Financial IT job market recovery continues

Recruitment growth suggests IT budgets are increasing 30 Jul 2010

Satellite broadband touted as digital divide clincher

KA-SAT launch promises 10Mbit/s service for hard-to-reach locations 29 Jul 2010

Ofcom slams ISPs for exaggerated broadband speed claims

New code of practice for ISPs planned by the regulator 27 Jul 2010

Aerohive offers traffic light Wi-Fi monitoring

Firm promises simple 'red, yellow or green' system with Client Health Score tool 27 Jul 2010

Flaw in top wireless security protocol WPA2 uncovered

Disgruntled insiders could hack corporate wireless LAN 26 Jul 2010

Advertisement

How to achieve business and financial-system implementation success
A look at how organisations - regardless of size - can work towards successful business software installations and factors that determine the outcome.

Case study: Specsavers put customer care into focus
How Specsavers captured customer feedback at point of sale and incorporated the results into its CRM system.

Advertisement

Citrix

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you thousands of white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

Latest poll

ICO to lean more heavily on public sector bodies

ICO to lean more heavily on public sector bodies

The ICO has said it will lean more heavily on public sector bodies to secure timely FOI responses, do you think this is:

View poll results

Latest audio and video articles

picture of Jason HartVideo

Ethical hacker reveals the security secrets behind cloud computing

Jason Hart, Senior VP at Cryptocard, shows Computing just how easy it is to illegally gain access to corporate cloud services to wreak havoc and steal money. 29 Jun 2010

gartner logoVideo

Part 1: 2010 trends in SOA and Application Development and Integration

Gartner analyst Paolo Malinverno explores trends in SOA 29 Jun 2010

Latest in-depth articles

Map of 3G coverageComment

The risks of selling off the 800MHz radio spectrum at the wrong price

It's a choice between revenue now or universal broadband later 30 Jul 2010

Luton Borough Council officesAnalysis

Local authority leads the way in digital backup technology

Luton Borough Council tells of the benefits of early adopter of VTL, data deduplication and virtualisation 27 Jul 2010

Primary Navigation