Group accounts should be avoided because they destroy individual accountability by allowing multiple people to share the same credentials. When a group account is used, it's impossible to determine which specific individual performed an action, violating the principle of individual accountability essential for security and compliance. Account groupings based on duties (A), distributing privileges to group members (C), and assigning accounts to multiple groups (D) are all valid security practices when combined with individual user accounts.