nerdexam
(ISC)2

SSCP · Question #168

Which of the following does not apply to system-generated passwords?

The correct answer is C. Passwords are more vulnerable to brute force and dictionary attacks. Users tend to choose easier to remember passwords. System-generated passwords can provide stronger, harder to guess passwords. Since they are based on rules provided by the administrator, they can include combinations of uppercase/lowercase letters, numbers and special…

Submitted by dimitri_ru· Apr 18, 2026Access Controls

Question

Which of the following does not apply to system-generated passwords?

Options

  • APasswords are harder to remember for users.
  • BIf the password-generating algorithm gets to be known, the entire system is in jeopardy.
  • CPasswords are more vulnerable to brute force and dictionary attacks.
  • DPasswords are harder to guess for attackers.

How the community answered

(30 responses)
  • A
    3% (1)
  • B
    7% (2)
  • C
    87% (26)
  • D
    3% (1)

Explanation

Users tend to choose easier to remember passwords. System-generated passwords can provide stronger, harder to guess passwords. Since they are based on rules provided by the administrator, they can include combinations of uppercase/lowercase letters, numbers and special characters, making them less vulnerable to brute force and dictionary attacks. One danger is that they are also harder to remember for users, who will tend to write them down, making them more vulnerable to anyone having access to the user's desk. Another danger with system-generated passwords is that if the password-generating algorithm gets to be known, the entire system is in jeopardy.

Topics

#Password security#System-generated passwords#Password attacks#Password complexity

Community Discussion

No community discussion yet for this question.

Full SSCP Practice