Close Menu
  • Gaming
    • Game Guides
    • Codes
    • Game News
    • Game Previews
    • Game Reviews
    • Game Features
    • Game Lists
    • Platforms
      • Nintendo
      • PC
      • PlayStation
      • Xbox
      • Mobile
  • Entertainment
    • Movies
    • Movie Features
    • Movie Reviews
    • TV
    • Reality TV
    • Royals
  • Celebrity
  • Human Interest
  • Astrology
  • Videos
  • More
    • Anime
    • Lists
    • Podcasts
    • Reviews
Facebook X (Twitter) Instagram LinkedIn YouTube
  • About Us
  • Join Our Team
  • Meet the Team
  • Privacy Policy
  • DMCA Policy
  • Contact Us
  • Terms of Use
  • Sitemap
  • Editorial Guidelines
  • Advertising Policy
The Nerd Stash
  • Gaming
  • Celebrity
  • Human Interest
  • Videos
The Nerd Stash
HomeยปNewsยปHackers Can Guess Your Security Questions

Hackers Can Guess Your Security Questions

How many times has this happened to you? The hour is late and you find yourself browsing around the internet. You arrive at a userโ€ฆ

Sean CoccaBy Sean CoccaMay 28, 20153 Mins Read
This article is over 10 years old and may contain outdated information.

How many times has this happened to you? The hour is late and you find yourself browsing around the internet. You arrive at a user login page for an online marketplace, letโ€™s say eBay. You remember your username with ease, but, for the life of you, you canโ€™t remember your password. You go through the gamut of security questions like your motherโ€™s maiden name and your first pet and,within minutes, voila, your password is reset and you a free to go about your business and conduct e-commerce. Thank goodness for those security questions, right?

Wrong. At least according to Elie Bursztein and Ilan Caron at Googleโ€™s Online Security Blog.

The pair were part of a team of researchers who were among the first to delve into the relatively unexplored world of online security questions. It turns out, according to the results of a research paper commissioned by Google, โ€œโ€ฆsecret questions are neither secure nor reliable enough to be used as a standalone account recovery mechanism.โ€

Google's offices in Brussels

 

They found that answers that were easy to remember were, surprisingly, not very secure. Most sites share some very common questions, which make them easy pickings for hackers.

With a single guess, an attacker would have a 19.7% chance of guessing English-speaking usersโ€™ answers to the question โ€œWhat is your favorite food?โ€ (it was โ€˜pizzaโ€™, by the way)

 

With ten guesses, an attacker would have a nearly 24% chance of guessing Arabic-speaking usersโ€™ answer to the question โ€œWhatโ€™s your first teacherโ€™s name?โ€

With ten guesses, an attacker would have a 21% chance of guessing Spanish-speaking usersโ€™ answers to the question, โ€œWhat is your fatherโ€™s middle name?โ€

With ten guesses, an attacker would have a 39% chance of guessing Korean-speaking usersโ€™ answers to the question โ€œWhat is your city of birth?โ€ and a 43% chance of guessing their favorite food.

 

On the other side of the coin, more complicated answers were difficult to remember.

40% of our English-speaking US users couldnโ€™t recall their secret question answers when they needed to. These same users, meanwhile, could recall reset codes sent to them via SMS text message more than 80% of the time and via email nearly 75% of the time.

Some of the potentially safest questionsโ€”โ€œWhat is your library card number?โ€ and โ€œWhat is your frequent flyer number?โ€โ€”have only 22% and 9% recall rates, respectively.

For English-speaking users in the US the easier question, โ€œWhat is your fatherโ€™s middle name?โ€ had a success rate of 76% while the potentially safer question โ€œWhat is your first phone number?โ€ had only a 55% success rate.

What can we do to make ourselves more secure? Google says more security questions may not be the answer because people will either pick easy questions or none at all. The good people at Google suggest that all Google users perform a security check to ensure their system is safe. Other that that, maybe pen and paper are still good for a few things, like keeping usernames and passwords secure and out of a hackerโ€™s reach.

Related Topics
Hackers Passwords pc security Technology
Share. Facebook Twitter LinkedIn Reddit Email
Sean Cocca
  • Website
  • Facebook
  • X (Twitter)
  • Instagram

Born and raised in Orange County, I'm Just your average guy with delusions of grandeur. Part time poet and full time geek, my interest run the gamut from video games and sci fi movies to newly emerging tech and various Cons.

SUGGESTED READS

Cincinnati fight
Human Interest

Black Leaders Criticize Handling of Viral Cincinnati Street Fight: โ€˜Our Community Is Restless and Watchingโ€™

JD Vance and Donald Trump in South Park
Human Interest

JD Vance Mocked For His Response To Latest โ€˜South Parkโ€™ Episode

Jennifer Aniston close up
Celebrity

Jennifer Aniston Told Perky Display โ€˜Not Classyโ€™ With Injured New Boyfriend In NYC

Daemon x Machina Titanic Scion Previews Round Up
News

The Recent Daemon X Machina: Titanic Scion Previews Confirm It Will Be The Best Mecha Game of the Year

indiana water test
News

โ€˜A Child Was Hospitalized:โ€™ Internet Blows the Whistle on Alleged Water Scandal in Alexandria, Indiana: โ€˜Officials liedโ€™

Adam Levine On The Voice
Celebrity

Adam Levine Faces โ€˜Patheticโ€™ Lawsuit Over Hurricane Relief Post: โ€˜Disgusting Money Grabโ€™

Trending

Say Goodbye to PS6 and the Console War? PlayStation โ€˜Moves Awayโ€™ From Hardware into Platform and โ€˜Engagementโ€™ Business Model

Texas woman gets drugged inside a Florida Walmart

Texas Woman Drugged at Florida Walmart Shares Scary Warning to Shoppers โ€˜The World Is So Demonicโ€™

Dangerous $1,600 Table Broken by 3-Year-Old at New Jersey Cafรฉ, Mom Left Astounded by Their Response

Dangerous $1,600 Table Broken by 3-Year-Old at New Jersey Cafรฉ, Mom Left Astounded by Their Response: โ€˜Too Bad for Them, the Internetโ€™s Foreverโ€™ 

Florida Woman Tells Off Karen After Unsolicited Comment at Walmart

Florida Woman Tells Off Karen After Unsolicited Comment at Walmart, โ€˜Itโ€™s AUGUST Bro People Dress for the Weatherโ€™ 

The Nerd Stash
Facebook X (Twitter) Instagram YouTube LinkedIn
  • About Us
  • Join Our Team
  • Meet the Team
  • Privacy Policy
  • DMCA Policy
  • Contact Us
  • Terms of Use
  • Sitemap
  • Editorial Guidelines
  • Advertising Policy
ยฉ 2025 The Nerd Stash. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.

Notifications