Top 10 Cybersecurity and Privacy Resolutions

In episode 101: Start the new year off right by following our top 10 cybersecurity and privacy resolutions! ** Show notes and links mentioned on the show ** Recommended Password Managers KeePass (free and open source): https://keepass.info/ Dashlane: h… Continue reading Top 10 Cybersecurity and Privacy Resolutions

Does knowledge of one or more passwords from my password manager help an attacker crack the master password?

I use a keepass password manager with a master password of more than 100 bits. I keep the password file in cloud storage. If an attacker has my password file, it should be difficult for them to brute force the password. Su… Continue reading Does knowledge of one or more passwords from my password manager help an attacker crack the master password?

Which is more secure Yubikey + Keepass using Challenge/Response or Yubikey + Keepass using OTP?

I use a Windows 10 PC and an Android phone with Keepass.

I would like to add a second factor on top of my master password that works with both Windows 10 and my Android phone.

Between the two support methods of authenticati… Continue reading Which is more secure Yubikey + Keepass using Challenge/Response or Yubikey + Keepass using OTP?

Google Nest’s Secret Microphone, Facebook Login Phishing, Password Manager Vulnerabilities – WB57

This is your Shared Security Weekly Blaze for February 25th 2019 with your host, Tom Eston. In this week’s episode: Google Nest’s secret microphone, a new Facebook login phishing campaign, and vulnerabilities in popular password managers. S… Continue reading Google Nest’s Secret Microphone, Facebook Login Phishing, Password Manager Vulnerabilities – WB57

Researchers extract master password in cleartext from 1Password

Regular internet users today juggle numerous accounts on various platforms and websites, often using the same weak password for all of them. Tech-literate users employ different passwords for different accounts, and strong ones at that. Those who are t… Continue reading Researchers extract master password in cleartext from 1Password