Step 3: Password testing -- What good are your findings?

Step 3: Password testing -- What good are your findings?

You can use your test results in a couple of different ways. For starters, they'll serve as a litmus test to determine whether or not you have password security risks. Odds are you do somehow somewhere. They'll also provide hard evidence to upper management that something needs to be done about the problem. This may include formal security awareness, new authentication technologies, or "tweaking" of existing policies -- especially on the enforcement side. 

All in all, password cracking tests are an excellent way to not only root out weaknesses on your Windows network but also to see if people and processes are adhering to policies. Perform these tests on your network now and ongoing in the future and I guarantee you'll be amazed at what you uncover.

    Requires Free Membership to View

    When you register, my team of editors will also send you the latest expert resources covering pertinent IT topics such as Windows server backup and recovery, server administration, storage management, infrastructure security, virtualization, Hyper-V, Active Directory and Group Policy.

    Cathleen A. Gagne, Senior Editorial Director

    By submitting your registration information to SearchWindowsServer.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchWindowsServer.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.


Cracking network passwords

 Home: Introduction
 Step 1: Ethical hacking methodology
 Step 2: Tools you should use
 Step 3: What good are your findings?

ABOUT THE AUTHOR
Kevin Beaver is an information security consultant, keynote speaker, and expert witness with Atlanta-based Principle Logic, LLC where he specializes in performing independent security assessments.

This was first published in December 2005