September 20, 2006
Top Five Causes of Data Compromise
Aviran's Place has a blog entry covering the top five causes of data compromise. These are based upon the Chamber of Commerce's article, PDF file here.
One of the scariest causes discussed is using POS or other software with password or other defaults in place. I wondered how prominent this was, but have recently come across a number of ISV supplied systems where the default password was not only encouraged, but required if you wanted to use remote support, as well as folks using a blank sa password on SQL Server, even in the case where using a blank password was made difficult by the installer.
Are you distributing a system that makes use of a default or easily defeated password mandatory? What can you do to make sure that the system is changed?
Posted by Douglas Reilly at 11:19 AM Permalink
|