Welcoming the Bulgarian Government to Have I Been Pwned

Presently sponsored by: Detack. Detect & prevent weak, leaked, shared passwords with EPAS, a patented, privacy compliant solution used in 40 countries. Try it free!

Data breaches impact us all as individuals, companies and as governments. Over the last 4 years, I’ve been providing additional access to data breach information in Have I Been Pwned for government agencies responsible for protecting their citizens. The access is totally free and amounts to APIs designed

Continue reading Welcoming the Bulgarian Government to Have I Been Pwned

Welcoming the Italian Government to Have I Been Pwned

Presently sponsored by: Varonis. Reduce your ransomware blast radius with the leader in data-first security. Try it free!

For the last 4 years, I’ve been providing API-level access to national government agencies so that they can search and monitor their government domains on Have I Been Pwned. Today, I’m very happy to welcome the 29th government to join the service, Italy! Via CSIRT-Italia within

Continue reading Welcoming the Italian Government to Have I Been Pwned

Weekly Update 287

Presently sponsored by: CrowdSec – The open-source & collaborative IPS: respond to attacks & share signals across the community. Download it for free.

So the plan was to schedule this week’s session in advance then right on 17:30 at my end, go live. It mostly worked, I just forgot to press the “go live” button having worked on the (obviously incorrect) assumption that would happen automatically. Lesson learned,

Continue reading Weekly Update 287

Setting the Bar for Government Access to Have I Been Pwned

Presently sponsored by: Varonis. Reduce your ransomware blast radius with the leader in data-first security. Try it free!

Over the last 4 years, I’ve onboarded 28 national government CERTs onto Have I Been Pwned (HIBP) and given them free and open access to APIs that enable them to query and monitor their gov domains. This doesn’t give them access to any information they can&

Continue reading Setting the Bar for Government Access to Have I Been Pwned

Weekly Update 286

Presently sponsored by: Varonis. Reduce your ransomware blast radius with the leader in data-first security. Try it free!

Somehow this week ended up being all about Russia and Cloudflare. Mostly as 2 completely separate topics, but also a little bit around Cloudflare’s ongoing presence in Russia (with a very neutral view on that, TBH). Looking back on this video a few hours later, the thing that

Continue reading Weekly Update 286

Building Password Purgatory with Cloudflare Pages and Workers

Presently sponsored by: Varonis. Reduce your ransomware blast radius with the leader in data-first security. Try it free!

I have lots of little ideas for various pet projects, most of which go nowhere (Have I Been Pwned being the exception), so I’m always looking for the fastest, cheapest way to get up and running. Last month as part of my blog post on How Everything We&

Continue reading Building Password Purgatory with Cloudflare Pages and Workers

Weekly Update 285

Presently sponsored by: CrowdSec – Check out our CTI Console, monitor attacks on your network, mitigate them and get intelligence on attackers. Sign up for free.

With travel now behind me, I’m back to a stable schedule and doing these on time again. Mind you, I came home to some of the wildest weather I’ve ever seen here, but it was kinda cool to watch and the kids didn’t complain

Continue reading Weekly Update 285

I Wanna Go Fast: How Many Pwned Password Queries Can You Make Per Second?

Presently sponsored by: Varonis. Reduce your ransomware blast radius with the leader in data-first security. Try it free!

I feel the need, the need for speed.

Faster, Faster, until the thrill of speed overcomes the fear of death.

If you’re in control, you’re not going fast enough.

And so on and so forth. There’s a time and a place for going fast,

Continue reading I Wanna Go Fast: How Many Pwned Password Queries Can You Make Per Second?