Here is the text of the NIST sp800-63b Digital Identity Guidelines.

    • Buddahriffic@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      Yeah, I think 7 and 8 both cover that. I recently signed up for an account where all of the “security questions” provided asked about things that could be either looked up or reasonably guessed based on looked up information.

      We live in a tech world designed for the technically illiterate.

      • eronth@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        1 year ago

        I usually invent answers to those and store those answers in a password manager. Essentially turns them into backup passwords that can be spoken over the phone if necessary.

        Where was I born? “Stallheim, EUSA, Mars”

        Name of first pet? “Groovy Tuesday”

        It’s fun, usually.