Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Saturday, 13 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

#World Password Day: Protecting corporate social media passwords

By: Darren Guccione, CEO at Keeper Security

by Guru Writer
May 4, 2023
in Insight
Data Privacy Day: Securing your data with a password manager
Share on FacebookShare on Twitter

May 4th is World Password Day – a good opportunity for organisations to assess how they’re protecting some of their most overlooked accounts: social media

When business leaders consider the role of password security in preventing data breaches, they naturally focus their attention on the most obvious weak points, such as employee email accounts and network passwords. However, social media passwords pose unique security issues that companies are sometimes ill-prepared to address. Whether due to an internal policy or if social media is outsourced to a third party agency, this lack of password security could be putting organisations and their reputations at risk.

 

Ways organisations expose their social media passwords

The lack of centralised, secure social media password management leaves businesses vulnerable to cyberthreats. In social media agencies, for example, unnecessary risks could start as early as the customer onboarding process when clients insecurely share their social media passwords with their agency through unencrypted emails or messages.

Another common mistake is that passwords are regularly stored in a spreadsheet or text file which creates a single point of failure. If this document is compromised, all accounts are compromised. Similarly, if the same password is used for multiple social media accounts, which is often the case, cybercriminals can more easily access other accounts if one is compromised.

Using weak passwords, or ones that have already been compromised as part of a public data breach, leaves accounts vulnerable to credential-stuffing and password spraying attacks. Oftentimes, social media teams will be completely unaware unless they have measures in place to alert them to any weak or compromised passwords that are available on the dark web.

 

Securing corporate social media passwords

All social media accounts should be protected by strong, unique passwords that are stored and shared securely. Additionally, these passwords should never be sent via email or SMS, where they could potentially be intercepted by prying eyes. 

A password manager is essential for securing social media accounts, especially if they need to be accessed by multiple people. A password manager can automatically generate strong passwords, store them in an encrypted vault, and allow employees to securely share the credentials with anyone who needs access.

Another advantage of a password manager is that it makes it easier for teams to protect accounts with two-factor authentication (2FA). Any user logging in with the password manager will have immediate access to 2FA codes through the shared record. This means they won’t have to ask their colleagues to send them the code through an insecure channel. Controlling access to employee and contractor accounts through role-based access control (RBAC), in conjunction with the principle of least privilege access, also limits access to the company’s social media accounts to only those employees who need it.

A lack of centralised password management increases the risk of an insider threat and a threat actor’s odds of successfully accessing the company’s social media accounts. Without a secure password management solution, it’s not possible to properly secure shared accounts with enterprise grade multi-factor authentication, making accounts even more vulnerable to compromise. 

World Password Day is a fantastic opportunity to secure social media (as well as many other types of) accounts. A password manager can drastically reduce the chances of a compromise that can hurt a company’s reputation or brand.

ShareTweet
Previous Post

#WorldPasswordDay – Solo, Boba, and Leia among most breached Star Wars passwords

Next Post

Keeper Security Announces Minority Growth Equity Investment from Summit Partners

Recent News

Nagomi Control Brings CTEM Into Action

2 in 5 Organisations Experienced Cyber Incidents Tied to Suppliers in Past Year

June 12, 2026
Certes Research Warns Legacy Systems Are Biggest Barrier to Quantum Security Readiness

KnowBe4 Expands Gamified Training Library With Launch of “Spot the Vish” Game

June 12, 2026
Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

June 12, 2026
artificial-intelligence

The More Confident Organizations Are in Their AI Security, the More Likely They’ve Been Breached, New Research Finds

June 11, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol