Skip to main content

The WiKID Blog

Viewing posts tagged Authentication Attacks

flaw-in-mail-list-compromises-password-file

There are a number of things that make passwords increasingly unusable. One of the biggest problems with passwords is that you're supposed to use different ones for different systems. It's a no-no to use the same password in multiple places because if one gets compromised, then the other systems are compromised.

comment-on-the-t-mobile-attack

I'm sure everyone (in security) has seen the article at Security Focus about the T-Mobile attack and probably some of the great commentary about it, especially here.


I only have one comment: Everyone write your bank, cellular company, credit card company, utility companies and tell them that you want strong authentication and you want it now.

follow-up-on-t-mobile-security

So this weekend, the blog started getting a ton of hits from google searches for "Paris Hitlon T-moble hacked SideKick" etc. I couldn't figure out why the big rush all the sudden until I read the Register this a.m..

could-two-factor-authentication-have-saved-7

Well, it is hard to say since there is still debate about whether the alleged rouge trader worked alone, but there are reports that using two-factor authentication might have it harder for him to make fake trades that appeared to offset losses.

debian-cvs-server-compromised

Hat tip to Chris Walsh at Emergent Chaos on the Debian server compromise. No information on wheter it was an authentication attack, like the last time in 2003.

Recent Posts

Archive

2024
2022
2021
2019
2018
2017
2016
2015
2014
2013
2012
2011
2010
2009
2008

Categories

Tags

Authors

Feeds

RSS / Atom