ITPEC IP April 2021 Question 43
ITPEC IP April 2021 — Question 43 of 100
A business-system password should not be reused for private Internet services. If one service is breached or a phishing site captures the password, reuse lets an attacker try the same credential against the business account. Each important account should therefore have a distinct strong password.
Answer (a)
Why not others:
- an initial password should be changed promptly
- rotating among a small fixed set repeatedly reuses known secrets
- plaintext files expose passwords to anyone or any malware that can read them
Key rule: Use unique credentials across services and store them securely, preferably with an approved password manager.
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.