About this course
This course explains why passwords alone no longer protect accounts, and what to use instead. It covers password managers, passkeys and multi-factor authentication, including the “MFA fatigue” attacks that try to wear people down with repeated approval requests. It also covers what to do if an account is compromised, and gives learners practice. It’s written for every employee.
Reused and weak passwords are one of the easiest ways into an organization: when one site is breached, attackers try the same password everywhere else. Many people find password managers and passkeys confusing and avoid them, and some approve unexpected MFA prompts just to make them stop. A single compromised account can give an attacker access to email, files and systems, sometimes for weeks before anyone notices.
- Scenarios and a knowledge check
- Web and mobile app, including offline