Weekly Update 433

Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite

It sounds easy – “just verify people’s age before they access the service” – but whether we’re talking about porn in the US or Australia’s incoming social media laws, the reality is way more complex than that. There’s no unified

Continue reading Weekly Update 433

Weekly Update 429

Presently sponsored by: Cyberattacks are guaranteed. Is your recovery? Protect your data in the cloud. Join Rubrik’s Cloud Resilience Summit.

A super quick intro today as I rush off to do the next very Dubai thing: drive a Lambo through the desert to go dirt bike riding before jumping in a Can-Am off-roader and then heading to the kart track for a couple of afternoon sessions. I post lots of

Continue reading Weekly Update 429

“Pwned”, The Book, Is Now Available for Free

Presently sponsored by: Cyberattacks are guaranteed. Is your recovery? Protect your data in the cloud. Join Rubrik’s Cloud Resilience Summit.

Nearly four years ago now, I set out to write a book with Charlotte and RobIt was the stories behind the stories, the things that drove me to write my most important blog posts, and then the things that happened afterwards. It’s almost like a collection of

Continue reading “Pwned”, The Book, Is Now Available for Free

Welcoming the Armenian Government to Have I Been Pwned

Presently sponsored by: Cyberattacks are guaranteed. Is your recovery? Protect your data in the cloud. Join Rubrik’s Cloud Resilience Summit.

Today, we’re happy to welcome the 37th government to have full and free access to domain searches of their gov domains in Have I Been Pwned, Armenia. Armenia’s National Computer Incident Response Team AM-CERT now joins three dozen other national counterparts in gaining visibility into how

Continue reading Welcoming the Armenian Government to Have I Been Pwned

Closer to the Edge: Hyperscaling Have I Been Pwned with Cloudflare Workers and Caching

Presently sponsored by: 1Password Extended Access Management: Secure every sign-in for every app on every device.

I’ve spent more than a decade now writing about how to make Have I Been Pwned (HIBP) fast. Really fast. Fast to the extent that sometimes, it was even too fast:

The response from each search was coming back so quickly that the user wasn’t sure

Continue reading Closer to the Edge: Hyperscaling Have I Been Pwned with Cloudflare Workers and Caching

Weekly Update 426

Presently sponsored by: 1Password Extended Access Management: Secure every sign-in for every app on every device.

I have absolutely no problem at all talking about the code I’ve screwed up. Perhaps that’s partly because after 3 decades of writing software (and doing some meaningful stuff along the way), I’m not particularly concerned about showing my weaknesses. And this week, I

Continue reading Weekly Update 426

Inside the DemandScience by Pure Incubation Data Breach

Presently sponsored by: 1Password Extended Access Management: Secure every sign-in for every app on every device.

Apparently, before a child reaches the age of 13, advertisers will have gathered more 72 million data points on them. I knew I’d seen a metric about this sometime recently, so I went looking for “7,000”, which perfectly illustrates how unaware we are of the

Continue reading Inside the DemandScience by Pure Incubation Data Breach