People, not passwords: The real lesson from Mat Honan’s iCloud hack nightmare

Mat Honan’s iCloud hack nightmare

Late Monday, Wired editor Mat Honan posted a detailed account about how lapses in Amazon and Apple technical support security enabled a “hacker” to flush his entire digital life down the toilet.

Amazon, you see, revealed the last four digits of one of Honan’s credit cards to the hacker, who pretended to be Honan on the phone. This allow the hacker to then call AppleCare with the information needed to change his iCloud password, and thus gain access to a dizzying array of accounts and devices. Honan’s iPhone, iPad, and MacBook Air were all remotely wiped. Gmail access gave the hacker access to his Twitter account, and that of Gizmodo, Honan’s former employer. As you would expect, havok ensued. And now much of the technology journalism world — yours truly included — is using Honan’s experience as a warning to beef up your passwords.

Honan’s story is well worth the read. But if you come out of it having learned anything, it should be this: Your password is not the biggest problem with computer security. People are.

Yes, weak passwords are a massive trouble spot. More than 20 years after the invention of the World Wide Web, people are still using phrases like “password” or “123456” as the key to their online lives. In fact, it’s laughably easy-to-guess passwords like these that are used most often. And anyone who employs such foolishness has nothing and no one but themselves to blame when their accounts get hijacked.

But when you talk to computer security experts, foolish passwords are not considered the weakest door in the vault.

“The weakest point in any computer system is between the seat and the keyboard.” This phrase or its equivalent is something I have heard repeatedly while speaking with cybersecurity experts over the years, and Honan’s experience proves its truth. As our lives become increasingly digitized and more information about ourselves gets stored on computer systems operated by either businesses or the government, it becomes a point we all need to take seriously.

So remember this: No matter how good your password or how secure a system, there is always a weak point in every system due to the sad fact that humans are so often imperfect, malicious, and dumb.

Comic via Saturday Morning Breakfast Cereal (SMBC)

The views expressed here are solely those of the author and do not reflect the beliefs of Digital Trends.

Home Theater

Netflix paid $100M to keep Friends, but viewers may pay the highest price

Netflix reportedly paid $100 million to keep '90s sitcom Friends on its service for another year, but the cost consumers might have to pay for access to their favorite shows and movies down the road could be much, much higher.

Facebook’s Libra could be dead on arrival, if India stands by its proposed ban

The government of India has announced that it is considering a ban on Facebook's new cryptocurrency, Libra. Without this key market, the success of the burgeoning cryptocurrency is in serious doubt.
Home Theater

How Amazon and Google’s streaming feud helped make Roku the streaming king

Amazon and Google are finally playing nice when it comes to streaming, with YouTube now available on Fire TV devices, and Amazon Prime Video available on Chromecast. Here's how remaining agnostic helped Roku leap ahead of the pack.
Home Theater

Netflix built a TV empire without ads. Here’s why it’s time to consider them

In an increasingly compacted and complex streaming landscape, Netflix is going to have to once again innovate to stay at the head of the pack. While adding commercials would be met with controversy, it could just be a saving grace.

No, the Pixel 4’s bezels are not a major crime against smartphone design

Leaks have shown us what the Google Pixel may look like from the front, and the bezels around the screen have sent the masses into a panic, claiming the design is outdated and ugly. Except it's not, and here's why.

Why recent hacks show Apple’s security strength, not its weakness

It may sound strange, but the recent stories about vulnerabilities in Apple’s security could be good news for the firm. That’s because they went a long way to highlighting its strengths -- and the strengths it has traditionally had over…
Movies & TV

Cringeworthy Cats trailer reminds us we’re not out of the Uncanny Valley yet

The first Cats trailer offers a disturbing reminder of how easy it still is for films that rely heavily on CG effects blended with human performances to slip into the Uncanny Valley of troubling visual elements.
Movies & TV

The new 007 is a woman. What does this mean for James Bond’s future?

According to the latest rumors, the new 007 will be played by Lashana Lynch, a black woman, in Bond 25, but don't worry. Ian Fleming's macho, womanizing superspy isn't going anywhere.

Enough is enough: It’s time to break up big tech companies

Antitrust investigations are needed when a business’ sheer bulk is abused, when innovative smaller companies are squashed, and when consumers are impacted. And frankly, that’s a very real problem in the tech world today.

Not every console is meant for you, and the Nintendo Switch Lite is proof

The Nintendo Switch Lite is a portable-only version of the Nintendo Switch that is missing several of its features. It won't appeal to hardcore Switch players, but that doesn't matter.

With voice and gestures, Google’s Pixel 4 takes us closer to a hands-free future

If we combine the features, we know are coming in the Pixel 4 -- gestures, face unlock, and better voice commands – we can clearly see that Google is leading the way towards a hands-free future. But how will it get there?

It's time for cell phone carriers to repent and stop gouging their customers

If you want to use your smartphone then you have little choice but to sign up to a service plan with a cell phone carrier. Sadly, carriers are adept at ripping us off, unnecessarily blocking features, throttling data speeds, and more.
Movies & TV

The Replacements: How Mighty Thor shows superhero swaps are the MCU’s future

Chris Evans, Robert Downey Jr., and others are finished with Marvel, but there's no reason why Captain America, Iron Man, and the rest can't live on. Here's how Mighty Thor proves superhero swaps are key to the MCU's future.

What’s the best way to stick it to Equifax? Make them work for you

If you're among those whose data was compromised by the Equifax data breach, you're probably not going to get the $125 promised by the FTC settlement. If you want to make Equifax pay, you're better off choosing free credit monitoring.