Security

Archive

Password Files on OneDrive Increasing

Corporate users of Microsoft’s OneDrive cloud storage are increasingly storing files there that contain passwords. According to a report released last month, “enterprises are routinely storing corporate password files in the cloud through Microsoft’s OneDrive...

Foreign spies trying to hack Trump, Clinton, and Sanders campaigns

Last week, James Clapper, the U.S. director of national intelligence, said there have been “some indications” that foreign hackers have been targeting the presidential campaigns of Donald Trump, Hillary Clinton, and Bernie Sanders. The FBI...

Background Noise as Authentication data?

So new this week is the idea of “Sound Proof” authentication. The idea is that the microphone on your device would listen to the background noise where you are and determine if you are who...

Almost 40% of Companies Still Use Only Passwords

So I ran across this article the other day about the number of companies still using password-only authentication. Now looking at the actual survey, and it says that in 2015, 39% of respondents reported using...

OpenSSH Vulnerable to Unlimited Authentication Attempts

Possibly the biggest security news this past week was the announcement of a bug in OpenSSH that opens it to password cracking. Normally, OpenSSH restricts the number failed authentication attempts that can occur on an...

“Brainprints” anyone?

So I ran across this interesting article on a new biometric, this time a brain scan while you think about specific acronyms. The thing I like most about this is that it seems to answer...

It’s Only a Matter of Time Before Your Insurance Requires 2FA

So I came across this interesting article about an insurance company that paid for the cost of a breach is now suing to get the money back from the insured company because of poor security...

Great news on the FIDO front!

So last week it was announced at the FIDO Plenary in Dublin, Ireland (I wish I would have been able to attend) that 18 different companies and 31 different products have been FIDO certified. This...

Compromised Credentials, 2FA Can Help

I ran across this article the other day about 5 signs you have compromised credentials on your network. None of the signs are necessarily new or unique, but I thought this was a concise description...

Remember, an iPhone is a Single-User Device

So I ran into this interesting article about iOS and issues the users and developers should be aware of when using Touch ID for authentication. The reason I think this is important to think about,...