Tag: authentication
-
Keeping 2FA Secrets in a Password Safe?
I use my password manager to generate TOTP second factor codes. I know this is controversial, with some folks claiming it reduces multifactor authentication down to a single factor and is therefore no better than just a username/password, but I disagree, and I can explain why.
-
Hey @VOXI_UK! There's a security #vulnerability in your website. An attacker can (a) exfiltrate mobile numbers and (b) authenticate bypassing OTP.
Not sure who to talk to about ethical disclosure. Let me know? -
Can I use HTTP Basic Auth in URLs?
Dan dives into HTTP Basic Authentication, its history, and how modern browsers support it, with a focus on URL-based credential passing.
-
That moment when you realise, to your immense surprise, that the research you've spent most of the year on might actually demonstrate the thing you set out to test after all. ๐ฒ
Screw you, null hypothesis. -
HTTP Authentication with HTML forms : Paul James
Bookmarked via del.icio.us: HTTP Authentication with HTML forms : Paul James.
-
OpenID For WordPress
Update: 12th October 2007 - this project is to be considered abandoned. Please see How To Set Up OpenID For WordPress Comments instead. Thanks for the support and for your interest in OpenID.
THIS IS ALL HORRIBLY OUT OF DATE. THE DOWNLOAD LINKS DON'T WORK, I KNOW. GET OVER IT. More seriously now, I am โฆ -
OpenID And Scatmania
Over the last few weeks I've playing playing with an exciting new technology known as OpenID. Do you remember Microsoft Passport and it's opposite number, Liberty Alliance? Well; we all know that these services weren't all they cracked up to be. They claimed to be "distributed log-on services", but in actual fact they were centralised โฆ


