184: 185: General Security Concepts, Communication Security, Infrastructure Security, Basics of Cryptography, and Operational / Organizational Security 186: Use more than just ascii, use more than just numbers, require a certain length, require frequent changes, lockouts after a certain number of failed attempts 187: They use all ASCII characters, they use all numbers, they are common words, they are too short. 188: Train employees, restrict the amount of information help desk employees know 189: Brute force, Social engineering, Denial of Service, Man in the Middle, 190: 191: Test your policies yourself or hire an off site penetration tester. 192: 193: Something the user knows (password), Something they have (RFID cards), Something that's part of them (fingerprint). 194: Fingerprint, retina match, voice, facial recognition, 195: LCP phase where the challenge message is sent, client responds with a hash value, authenticator checks its response against its own calculation. Communications are established. 196: Patch, check accounts, check logs, user accounts 197: 198: Network sniffing, SQL injection, weak passwords