The WiKID Blog, musings on two-factor authentication, information security and some other stuff.
The convenience of multiple tokens per user
Posted by: root 9 years, 4 months ago
I think this tweet lamenting the state of two-factor authentication and online identity will be increasingly common:
Add two-factor authentication to any app that uses AD
Posted by: root 9 years, 5 months ago
We have primarily been promoting our new native AD two-factor authentication for use by Administrators looking to meet the latest PCI-DSS 3.2 requirements or thwart pass-the-hash attacks, however it is more powerful than that.
Non-Console Administrative Access
Posted by: root 9 years, 6 months ago
Now that PCI-DSS 3.2 is live, we have been pondering how hard it will be to implement the new multi-factor authentication requirements. First some definitions from the PCI Glossary:
2016 Verizon DBIR points to two-factor authentication and software whitelisting (again)
Posted by: root 9 years, 6 months ago
The Verizon DBIR 2016 is out today and this is our obiligatory blog post. The usual caveats apply: it's a small (but growing) data set, there are reporting biases, etc, etc.
More information on the upcoming PCI-DSS 3.2
Posted by: root 9 years, 6 months ago
The PCI Council has published another blog post on the upcoming changes for PCI-DSS 3.2 especially how they relate to multi-factor authentication.
Recent Posts
- Blast-RADIUS attack
 - The latest WiKID version includes an SBOM
 - WiKID 6 is released!
 - Log4j CVE-2021-44228
 - Questions about 2FA for AD admins
 
Archive
2024
2022
- December (1)
 
2021
2019
2018
2017
2016
2015
2014
- December (2)
 - November (3)
 - October (3)
 - September (5)
 - August (4)
 - July (5)
 - June (5)
 - May (2)
 - April (2)
 - March (2)
 - February (3)
 - January (1)
 
2013
2012
- December (1)
 - November (1)
 - October (5)
 - September (1)
 - August (1)
 - June (2)
 - May (2)
 - April (1)
 - March (2)
 - February (3)
 - January (1)
 
2011
2010
- December (2)
 - November (3)
 - October (3)
 - September (4)
 - August (1)
 - July (1)
 - June (3)
 - May (3)
 - April (1)
 - March (1)
 - February (6)
 - January (3)
 
2009
- December (4)
 - November (1)
 - October (3)
 - September (3)
 - August (2)
 - July (5)
 - June (6)
 - May (8)
 - April (7)
 - March (6)
 - February (4)
 - January (427)
 
2008
- December (1)
 
Categories
- PCI-DSS (2)
 - Two-factor authentication (3)
 
Tags
- wireless-cellular-mobile-devices (7)
 - Two-factor authentication (10)
 - Wireless, cellular, mobile devices (6)
 - NPS (1)
 - Phishing and Fraud (111)
 - Active Directory (1)
 - pam-radius (3)
 - privileged access (2)
 - Cloud Security (10)
 - Mutual Authentication (60)
 - Web Application Authentication (1)
 - Authentication Attacks (99)
 - pci (50)
 - Security and Economics (97)
 - WiKID (133)
 - pam (2)
 - VPN (1)
 - Installation (2)
 - RADIUS Server (1)
 - Open Source (64)
 - Tutorial (2)
 - Strong Authentication (35)
 - Information Security (137)
 - Transaction Authentication (13)
 - Miscellaneous (100)
 - Linux (2)
 - transaction-authentication (6)
 - Two Factor Authentication (254)
 
