Weekly Update 322

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

It’s very strange to have gone 1,051 days without spending more than a few hours apart, but here we are… very temporarily:

Continue reading Weekly Update 322

Weekly Update 321

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

What a week to pick to be in Canberra. Planned well before things got cyber-crazy in Australia, I spent a few days catching up with folks in our capital and talking to the Australia Federal Police for scam awareness week. That it coincided with the dumping of Medibank customer health

Continue reading Weekly Update 321

The Have I Been Pwned API Now Has Different Rate Limits and Annual Billing

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

A couple of weeks ago I wrote about some big changes afoot for Have I Been Pwned (HIBP), namely the introduction of annual billing and new rate limits. Today, it’s finally here! These are two of the most eagerly awaited, most requested features on HIBP’s UserVoice

Continue reading The Have I Been Pwned API Now Has Different Rate Limits and Annual Billing

Weekly Update 320

Presently sponsored by: Kolide is a fleet visibility solution for Mac, Windows, and Linux that can help you securely scale your business. Learn more here.

I feel like life is finally complete: I have beaches, sunshine and fast internet! (Yes, and of course an amazing wife, but that goes without saying 😊) For the folks asking via various channels, the speed is not exactly symmetrical at 1000/400 and I’m honestly not sure

Continue reading Weekly Update 320

Better Supporting the Have I Been Pwned API with Zendesk

Presently sponsored by: Kolide is a fleet visibility solution for Mac, Windows, and Linux that can help you securely scale your business. Learn more here.

I’ve been investing a heap of time into Have I Been Pwned (HIBP) lately, ranging from all the usual stuff (namely trawling through masses of data breaches) to all new stuff, in particular expanding and enhancing the public API. The API is actually pretty simple: plug in an

Continue reading Better Supporting the Have I Been Pwned API with Zendesk

Weekly Update 319

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

Geez we’ve been getting hammered down here: Optus, MyDeal, Vinomofo, Medibank and now Australian Clinical Labs. It’s crazy how much press interest there’s been down here and whilst I think some of it is a bit hyperbolic, bringing the issue to the forefront and

Continue reading Weekly Update 319

Weekly Update 319

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

Geez we’ve been getting hammered down here: Optus, MyDeal, Vinomofo, Medibank and now Australian Clinical Labs. It’s crazy how much press interest there’s been down here and whilst I think some of it is a bit hyperbolic, bringing the issue to the forefront and

Continue reading Weekly Update 319

Big Changes are Afoot: Expanding and Enhancing the Have I Been Pwned API

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

Just over 3 years ago now, I sat down at a makeshift desk (ok, so it was a kitchen table) in an Airbnb in Olso and built the authenticated API for Have I Been Pwned (HIBP). As I explained at the time, the primary goal was to combat abuse of

Continue reading Big Changes are Afoot: Expanding and Enhancing the Have I Been Pwned API

Weekly Update 318

Presently sponsored by: EPAS by Detack. No EPAS protected password has ever been cracked and won’t be found in any leaks. Give it a try, millions of users use it.

Aussie breachapalooza! That what it feels like this week between Optus (ok, it was weeks ago but it’s still in the news), Vinomofo, My Deal and the mother of all of them (at least as far as media interest goes), Medibank. That last one totally smashed my week

Continue reading Weekly Update 318

Weekly Update 317

Presently sponsored by: Varonis. Reduce your SaaS blast radius with data-centric security for AWS, G Drive, Box, Salesforce, Slack and more.

I decided to do something a bit different this week and mostly just answer questions from my talk at GOTO Copenhagen last week. I wasn’t actually in Denmark this time, but a heap of really good questions came through and as I started reading them, I thought “

Continue reading Weekly Update 317