Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Saturday, 27 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

KnowBe4 Urges Organisations to Adopt Secure Password Practices on Change Your Password Day 2025

Going beyond an annual password change, Martin Kraemer, security awareness advocate at KnowBe4, shares five practices all organisations should adopt to improve their security hygiene

by The Gurus
January 30, 2025
in News
Share on FacebookShare on Twitter

KnowBe4, the cybersecurity platform that comprehensively addresses human risk management, celebrates upcoming Change Your Password Day by encouraging organisations to adopt secure, more effective password strategies to combat evolving cyber threats.

After experiencing the distressing consequences of being hacked on two separate occasions, former technology journalist Matt Buchanan established Change Your Password Day in 2012. Observed annually on February 1st, the day aims to raise awareness about cybersecurity and underscores the importance of keeping passwords strong and up to date. While its original purpose—encouraging regular password updates—may seem a little outdated to many security professionals, the day continues to hold value in emphasising the significance of personal and collective responsibility in cybersecurity.

Despite advances in multi-factor authentication (MFA) and biometrics, passwords remain a primary defence for digital security. Unfortunately, many users still rely on weak, reused passwords, creating significant vulnerabilities. A single breached password can allow attackers to infiltrate networks, steal sensitive data, compromise accounts and launch phishing campaigns, potentially leading to severe financial and reputational damage for organisations.

In the 13 years since the day’s inception, cyber threats have evolved significantly, as have the measures used to combat them. As a result, experts now emphasise the importance of adopting advanced practices that go beyond simply changing passwords, offering a more effective, robust, and user-friendly approach to safeguarding sensitive information.

Acknowledging that effective security requires more than an annual password change, Kraemer outlines five essential practices for organisations to establish strong security hygiene in 2025:

  1. Monitor new passwords automatically: Use available tools to validate new passwords against known breaches and dark web datasets, and alert users to change their passwords if a match is detected.

  2. Encourage the use of pass-phrases or randomly generated passwords: Promote pass-phrases or randomly generated passwords for greater strength and resilience against attacks.

  3. Require the use of a password manager: Mandate password managers to securely create, store, and manage unique credentials, removing the burden away from the employee to remember long character combinations.

  4. Recommend implementing Multi-Factor Authentication (MFA): Strengthen security by requiring an additional verification step, like a code, biometric, or token.

  5. Reduce the importance of password complexity in favour of length: Where a password manager cannot be used, encourage employees to focus on longer passwords or pass-phrases rather than relying heavily on complex character requirements.

“While Change Your Password Day is a great reminder to all employees of their individual responsibility when it comes to cybersecurity, in today’s climate, it might be better named ‘Use Strong Authentication Day.’” said Kraemer. “Changing your password regularly once served as a timely reminder that cybersecurity mattered, even if the act itself did not always result in greater security. Now, the actions required of employees may be different, but the message remains the same—everyone has a part to play in safeguarding their organisation against threats.”

For more insights and best security practices, visit https://www.knowbe4.com/.

This comes after news that KnowBe4 have launched their threat labs and analysis initiative to mitigate human-targeted cybersecurity attacks.

Tags: cybersecuritysecurity awarenessTechnology
ShareTweet
Previous Post

CybaVerse AI launched to redefine how MSPs deliver security

Next Post

How Spread Betting Platforms Safeguard Traders Against Cyber Risks

Recent News

Keeper Security launches Microsoft Teams integration for privileged access management

Keeper Security launches Microsoft Teams integration for privileged access management

June 26, 2026
UK Museums Are a Cyber Incident Waiting to Happen and the Government Knows It

UK Museums Are a Cyber Incident Waiting to Happen and the Government Knows It

June 25, 2026
pqc

New Forescout Data Reveals Slow Progress Toward Quantum-Safe Security

June 24, 2026
AI-Powered Phishing Attacks Surge 1,380% as Criminal Platforms Render MFA Obsolete

AI-Powered Phishing Attacks Surge 1,380% as Criminal Platforms Render MFA Obsolete

June 24, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol