- Posted August 27, 2026
- In authentication, compliance, cybersecurity, NIST, passwords, policy
The Password Memo Was Honest. The Checklist Wasn’t.
The 2004 NIST memo blamed for password composition rules hedged its own numbers and predicted how users would defeat them. It also never contained the 90-day rotation rule everyone attributes to it.
0
