exploreJeffersonPA.com

Consumers Reminded that Strong Passwords are Key to Online Security

HARRISBURG, Pa. – In the wake of the massive Facebook data breach affecting nearly 50 million accounts and the exposure of private data belonging to 500 thousand Google+ users, Pennsylvania state agencies are reminding consumers of the need to take password security seriously.

“The data involved in the Facebook and Google+ incidents, such as hometowns, birthdays, and other personal details, are often elements of weak passwords,” added Secretary of Administration Sharon Minnich, whose office oversees cybersecurity for Commonwealth agencies. “Additionally, the personal data could be used in phishing attacks to convince targets that the criminal is someone they know or trust.”

“We live in an age where technology is providing both enormous benefits and heightened risks for consumers and businesses,” said Secretary of Banking and Securities Robin Wiessmann, whose agency established a Cybersecurity Team in 2015. “Cybercriminals are taking advantage of people who are still choosing convenience over caution and using weak passwords, re-using them on multiple accounts and rarely changing them, thereby increasing their risk of identity theft.”

According to an industry report, 81 percent of hacking-related breaches that occurred in 2017 used either stolen and/or weak passwords.

The Commonwealth and other security experts recommend the following password practices:

If you believe one of your passwords may have been compromised, you should:

You can find more tips at www.pa.gov/guides/cybersecurity.

The Office of Administration oversees the commonwealth’s cybersecurity strategy, standards, and enterprise security posture. The office works with state agencies to prevent and defend against cyber attacks and continuously promote security awareness.

The Department of Banking and Securities also offers businesses online resources that can help businesses protect themselves and their customers from cyber thieves: www.dobs.pa.gov/Businesses/cybersecurity.