Online Security Question Fallacy
Today’s comic from Rhymes with Orange perfectly summarizes the problems with the online security questions. We use these to reset passwords, but when the answers to these questions are common knowledge, it makes resetting your password trivial.
Good security practice would be to come up with a question and answer set that people couldn’t guess, or to falsify the answers. It’s almost like creating a password…for your passwords. It would appear to be flawed logic.