Clifford Stoll, author of The Cuckoo’s Egg, an investigation into the hacking of the Lawrence Berkeley National Laboratory that led to the capture of hacker Marcus Hess, famously said: “Treat your password like your toothbrush. Don’t let anyone else use it and get a new one every six months.”
Persistent use despite proven vulnerabilities
Asked why six decades following the introduction of passwords, this authentication method to access remains in force, Andrew Shikiar, executive director with FIDO Alliance, pointed to another authentication method – two-factor authentication (2FA), introduced 30 years ago – it too faces increasing risks of bypass attacks.

“With the rise of nefarious generative AI tools like Evil GPT, phishing attacks have become more sophisticated and challenging to detect, placing a heavier burden on employees to discern fake messages.”
Andrew Shikiar
