What are security questions?
A method of authentication used to verify the user often during a password recovery of an account. FORM OF 2FA
What happens?
When setting up account’s users are often asked to proved security questions security questions if needed to recover account
Give an example:
What is the name of your favourite uncle
what is your mother’s maiden name
2 types:
User defined: Lets users choose questions from a set list they would provide
System Defined: Questions based on information that the website already knows about the user