🌐
Okta
okta.com › blog › identity security
Security Questions: Best Practices, Examples, and Ideas | Okta
Security questions are a common method of identity authentication—but are they secure? Learn the best practices, examples of good security questions, and more.
People also ask

What are examples of some common security questions?
  • In what city were you born?
  • What is the name of your favorite pet?
  • What is your mother's maiden name?
  • What high school did you attend?
  • What is the name of your first school?
  • What was the make of your first car?
  • What was your favorite food as a child?
  • Where did you meet your spouse?
🌐
beyondtrust.com
beyondtrust.com › home › resources › blog › 10 common security questions--and the tips & tricks to mitigate their threat
How Common Security Questions Can Pose a High Risk | BeyondTrust
Why Are Common Security Questions a Problem?

The problem with these security questions (and with our answers) is that they become a liability when the results are leaked online, such as through a data breach, or become public knowledge. Why? Because many (in fact, thousands) of sites potentially use identical security questions. The variation from site-to-site is low, and questions for each user frequently, and inevitably, overlap across their many accounts. This standardization of security questions creates a substantial, but unnecessary, risk.

🌐
beyondtrust.com
beyondtrust.com › home › resources › blog › 10 common security questions--and the tips & tricks to mitigate their threat
How Common Security Questions Can Pose a High Risk | BeyondTrust
Are security questions still effective?
While they can be useful, security questions are most effective when paired with other methods like two-factor authentication.
🌐
passwordhero.com
passwordhero.com › blog › good-and-bad-security-questions-to-use-online-with-examples
Good and Bad Security Questions to Use Online (with Examples)
🌐
Full Scale
fullscale.io › blog › best-security-questions
Best Security Questions for Robust Protection (Examples)
Discover all the latest in technology, trends, innovation, IT news, hot skills, and culture from Full Scale's official blog.
🌐
VeePN
veepn.com › home › best security questions: selection criteria and examples
Best Security Questions: Selection Criteria and Examples | VeePN Blog
May 21, 2025 - Within the framework of this article, it seems appropriate to give examples of security questions, dividing them into two categories: efficient and inefficient. Study each carefully and decide on the best questions already today. What was your childhood best friend’s nickname? In which city did your parents meet? What’s your neighbor’s last name? How many pets did you have at 10 years old?
🌐
OWASP Cheat Sheet Series
cheatsheetseries.owasp.org › cheatsheets › Choosing_and_Using_Security_Questions_Cheat_Sheet.html
Choosing and Using Security Questions - OWASP Cheat Sheet Series
Security questions fall into two main types. With user defined security questions, the user must choose a question from a list, and provide an answer to the question. Common examples are "What is your favourite colour?" or "What was your first car?"
🌐
BitGlint
bitglint.com › best-security-questions-all-you-need-to-know
Top 40 Best Security Questions: All You Need to Know - BitGlint
– Choose a less common favorite dish to make it harder to guess. 7. What was the model of your first car? – A typical security question that’s not easily guessed. 8. What is your mother’s middle name? – This can be secure if not shared publicly. 9. Where did you go for your first vacation? – Use a specific location that’s not prominently mentioned on social media. 10.
Published   December 13, 2024
🌐
Ntiva's Help Center
support.ntiva.com › hc › en-us › articles › 10303992796173-10-Security-Questions-Your-Organization-Should-Be-Asking
10 Security Questions Your Organization Should Be Asking – Ntiva's Help Center
Do you provide periodic anti-fraud and security training to employees? Social engineering is another common way attackers gain access to corporate networks and systems.
🌐
Stumble Forward
stumbleforward.com › home › scams & identity theft › the 10 most common password security questions
The 10 Most Common Password Security Questions
February 7, 2024 - While it may seem like an extra step to get to your account when you’re in a hurry, login security questions should not be taken lightly. When you answer these ten most common security questions one or two at a time, it’s easy to overlook just how simple the answers are:
Find elsewhere
🌐
Quora
quora.com › What-are-common-password-security-questions-and-how-might-hackers-obtain-the-answers
What are common password security questions, and how might hackers obtain the answers? - Quora
Answer (1 of 26): Common security questions are used as an extended security feature to trigger out the memory of a person, what is your mother's maiden name? But these questions are affecting differently. In 2008, a 20-year-old college student hacked the Yahoo! email account for then vice-presi...
🌐
Passwordhero
passwordhero.com › blog › good-and-bad-security-questions-to-use-online-with-examples
Good and Bad Security Questions to Use Online (with Examples)
Security questions might seem simple, but they can pose significant risks if not chosen carefully. The main issue lies in their predictability. Common questions like “What is your favorite color?” or “Where were you born?” can often be answered through a quick internet search or by browsing your social media profiles.
🌐
Uah
libguides.uah.edu › passwords › securityquestions
Security Questions - Passwords, Two-Factor Authentication, and Security Questions - LibGuides at University of Alabama Huntsville
This guide goes into more detailed looks at passwords, password managers, and two-factor authentication. On overview of security questions and their problems.
🌐
NordVPN
nordvpn.com › blog › security-questions
How to choose the best security questions | NordVPN
May 7, 2025 - Good security questions for recovering a user’s current password should meet the following characteristics: Memorable. The answer to the question should immediately pop into your head, even if you’re logging in two years after you first created the account. Don’t make it the song you listened to on repeat 10 ...
🌐
Staffbase
staffbase.com › home › blog › employee app › 10 security questions to answer for your internal communications app
10 Security Questions To Answer For Your Internal Communications App | Staffbase
August 27, 2025 - Your app/provider should know about them and be able to deal with them. The applications you use should be protected against common risks in Web applications, such as CSRF, SQLi, and XSS. Choose an app that either allows you to do penetration tests or that offers up old penetration tests results. ... 10.
🌐
Google
google.com › goto
10 Common Security Questions & Answers: Best Practices | Iris AI
1 week ago - Get the facts on 10 common security questions and answers, plus practical tips to keep your accounts safer with smarter security question strategies.
🌐
Draftable
draftable.com › home › blog › 10 security questions you should be asking your legal tech vendors
10 security questions you should be asking your legal tech
December 20, 2024 - The key is asking 10 crucial questions. First, confirm ISO 27001 compliance, ensuring vendors meet international security standards. Additionally, verify they have cybersecurity insurance, providing financial protection against breaches.
🌐
Infosec Institute
infosecinstitute.com › resources › general-security › security-question-and-answer-tips
Security question and answer tips | Infosec
Getting to know you (for password purposes) How many times have you forgotten your password and were asked to answer security questions? This is currently o
🌐
Cloud Security Alliance
cloudsecurityalliance.org › articles › 10-important-questions-to-add-to-your-security-questionnaire
10 Essential Security Questions for Vendor Review | CSA
Clear guidelines should outline that data is not kept longer than necessary and is securely deleted when no longer needed, reducing the risk of unauthorized access. ... Why it matters: Common cyberattack targets include endpoints like laptops, smartphones, and tablets.
🌐
Foyer
usefoyer.com › blog › security-questions-examples
Security Question Best Practices [+31 Security Questions Examples] | Foyer
For example, think about the question "what's the make and model of your first car?". If someone wanted to figure out the answer, they could search your social media profiles or they could ask your friends or family to figure it out. If you need to create a security question, it has to be something that has never been posted anywhere or mentioned to anyone.
🌐
Cloudfresh
cloudfresh.com › cloud blog › how to choose the best security questions for maximum safety
How to Choose Best Security Questions for Maximum Safety - Cloudfresh
December 5, 2024 - Experience-Based Questions: These questions are based on personal experiences or memories. Examples: “What was the name of the street you grew up on?”, “Where did you go on your honeymoon?” · Common security questions, which are familiar to many users, are designed to be straightforward, asking for information that is assumed to be known only by the user.