Password Spraying
This is another way of guessing account passwords but instead of trying to enter numerous passwords for one account, hackers use one common password and try to enter it to numerous accounts.
This method allows hackers not to be locked out because of numerous failed attempts. They just hope that one person in an organization or a social media platform uses common passwords and eventually take over these accounts.
What can we do?
- Use unique and strong passwords for all online accounts
- Abide to password policies of your organization. Most organizations ban commonly used passwords.
- Switch to biometric (face, fingerprint, etc.) or Multi-factor Authentication (MFA)