Before surveillance fatigue kicks in and you hit the close button on your browser, remember that the NSA are probably right now examining all the open internet connections on your router because you loaded this Youtube video of a man talking at a security conference. Yeah, you’re welcome.
Speedy password cracking
Earlier today Jeff Atwood tweeted: you should *really* be scared if your passwords are all lowercase. 12 chars in 75 days on my box.. He was referring to his post on speed hashing where a video card GPU is used to calculate the hash of any given text. Compared to […]
WordPress Upgrade Notifications by Email
This weekend will go down in history. It’s the first time I’ve been seriously sick in well over 5 years. A bug infected my son on Wednesday, but he got over it quickly enough. Then the same bug hit my wife and I on Sunday morning and we’re just getting […]
PHP Optimization and Security tips and rant
Andrew van der Stock’s criticism of PHP’s security model. What security? Global request arrays go some way to making applications safer but there are obscure functions and settings which can trip up developers. (via) PHP Optimization Tricks from Ilia Alshanetsky has one gem I didn’t know about – the ctype […]
Web Application Security Reviews
John Lim lists some of the requirements for an “enterprise” financial application. I’ve never gone to the lengths John has to pass such an audit but I can imagine it wasn’t easy!
$2 trillion fine for Microsoft security snafu?
Doubtful it’ll happen.. Microsoft’s latest security lapse with its Passport information service could trigger a $2.2 trillion fine on the company courtesy of the US government. Microsoft on Thursday admitted that a flaw in the password reset tool of its Passport service could compromise the information stored on all 200 […]