Stop resetting your passwords, says UK govt's spy network

Martin Gregorie

We use it to sign in to just about everything, often including systems where we have privileged access.

If your employer's passwords are regarded as so corplife-threatening as to need such an elaborate vetting process, why not ditch them altogether and switch to a 2FA system? Much more secure.

Its not as if the 2FA tokens are all that expensive (if they were, the banks wouldn't hand them out like candy) or even that new: the GMP were using 2FA logins back in the late '80s, so if plod can handle 2FA then any PHB should be able to get his head round it too.

