Lessons Learned from The Sarah Palin Email Hack

CYBERSPACE — The hack of GOP vice-presidential nominee Sarah Palin's email provides a lesson to computer users everywhere: common password protection isn't that great.

The hacker claiming to be behind the email invasion posted on the Internet message board 4Chan.org explained how he retrieved Palin's password information. It sounded all too easy.

First, the hacker used the password retrieval function associated with Palin's Yahoo account and answered two security questions: The governor's birthday and her home ZIP code, both of which he said he was able to find through simple Google searches.

After that, the hacker encountered a more challenging security question: Where did the governor meet her husband?

But once again, a trip to YouTube or some other video-sharing site was all the hacker needed. Gov. Palin herself recounted during her acceptance speech at the Republican national convention that she met her husband at Wasilla, Alaska, High School.

What does this mean for the rest of us? Roger A. Grimes, a security expert who writes for InfoWorld.com, said that no amount of good programming can make up for lousy security questions.

"If your password reset feature is weak (and most are), then the security of your account has nothing to do with anything else besides those few questions," he said.

"It doesn't matter how good the vendor's other security features are, it doesn't matter how long and complex your password is, it doesn't matter how secure their coding is and whether they use SDL programming,” Grimes added. “All that matters is how common the questions and answers are.

What's the solution? One possible answer is to treat every security question like another password field.

"When they ask you for your dog's name, say something like 'Im5n$?aTuy' and put that for all your password reset answers," Grimes said.

Related:  

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Florida AG Sues EU-Based Adult Companies for Failing to Age-Verify Users

Florida Attorney General James Uthmeier filed a lawsuit Monday with the 12th Judicial Circuit Court of Florida against five EU-based adult companies for allegedly failing to require age verification before allowing access to adult content.

SkyPrivate Launches 'Telegram Pay-Per-Minute' Feature

SkyPrivate has launched a new pay-per-minute (PPM) private show option on Telegram.

Pineapple Support to Host 'Money and Mental Health' Online Event

Pineapple Support is hosting a free, online event to help performers balance financial wellbeing with mental health, Aug. 18-19.

Arcom Warns 5 Adult Sites Over Age Verification

French media regulator Arcom has sent enforcement notices to the operators of five adult websites that the agency says have failed to implement age verification as required under France’s Security and Regulation of the Digital Space (SREN) law.

MojoHost Debuts NVIDIA Blackwell-Powered Hosting

MojoHost has announced the launch of NVIDIA Blackwell-powered hosting featuring RTX 6000 Pro MaxQ GPUs.

FSC: Identity Theft Targeting Adult Performers

The Free Speech Coalition has put out an alert warning of an individual found to be targeting adult performers for identity theft.

Assylum.com Implements New Age Verification System

Assylum.com has introduced an age verification system across its member sites.

European Commission to Assess Pornhub, XVideos, XNXX Compliance With Digital Services Act

The European Commission plans to conduct a study to determine how well adult sites Pornhub, XVideos and XNXX are addressing illegal content and other potential harms under the EU’s Digital Services Act.

German Higher Court Upholds Ban on PornHub, YouPorn

The Higher Administrative Court of Rhineland-Palatinate on Thursday upheld a “network ban” on Aylo-owned adult sites Pornhub and YouPorn for failing to comply with German age verification regulations.

Alabama Notifying Adult Sites of New Tax Set to Take Effect Sept. 1

The Alabama Department of Revenue has begun sending notices to adult site operators about a new 10% tax on their revenues, set to be enforced starting Sept. 1.

Show More