Tag: security
-
Passwords
This repost was published in hindsight, on 11 March 2019.
Fiona wrote:
I have been uneasy for a while about my passwords, but being dyslexic and a bit lazy there was not an obvious solution to make it more secure and not lock me out. The problem that I have is anything that requires memorising a โฆ -
Passwords - The Least You Should Do
If you're reading this, there is at least a 95% chance that your passwords aren't good enough. You should fix them. Today.
-
Mobile One-Time-Passwords in Ruby
A Ruby-based implementation of the Mobile One-Time-Password system, providing two-factor authentication for Rails applications, among other things.
-
Copy-Pasting Passwords into Steam
Valve are running a security theatre by pretending that a "feature" in Steam provides protection, when in actual fact it simply makes things harder for users with good security sense. Here's how to circumvent the feature, as well as some tips on great password safe programs.
-
The Worst Server Infection I've Ever Seen
Dan discovers a mountain of malware on a client's database server, and wonders how it all got there.
-
SuperGenPass In MicroB On The Nokia N900/Maemo
In the unlikely event that I'm not the only person who uses SuperGenPass to manage my passwords and MicroB on Maemo on my Nokia N900, here's a few tips that I thought I'd share (they're also valid on the N800 and N810 and "hacker edition" N770s, too, I expect):
You don't have a Bookmarks โฆ -
HttpOnly Session Cookies using ActiveRecordStore in Rails 2.2
If you're using CookieStore to manage sessions in your Ruby on Rails application, Rails 2.2 provides the great feature that you're now able to use HTTPOnly cookies. These are a great benefit because, for compatible web browsers, they dramatically reduce the risk of a Cross Site Scripting (XSS) attack being able to be used to โฆ
-
SSL Client Certificate Authentication In Ruby On Rails
I've been playing with using client-side SSL certificates (installed into your web browser) as a means to authenticate against a Ruby on Rails-powered application. This subject is geeky and of limited interest even to the people who read this blog (with the possible exception of Ruth, who may find herself doing exactly this as part โฆ
-
HTTP Authentication with HTML forms : Paul James
Bookmarked via del.icio.us: HTTP Authentication with HTML forms : Paul James.
-
LiveJournal Needs To Tighten Security
Hmm... as part of my ongoing work with Abnib v3.0, I've noticed a couple of interesting little quirks in the way that LiveJournal handles security for "friends only" and "private" posts. In fact, I'm pretty sure I've found a way to - for any given user - produce a list of the times, dates, and โฆ
-
scan.co.uk
Ruth wrote:
We are in the process of ordering a new computer. Most of the bits are coming from Scan. Now, their range is lovely, and their postage policy is reasonably sensible, but they have a dumb policy on debit cards.
If you pay with a debit card (instead of a credit card), you can โฆ -
Top 75 Network Security Tools
Bookmarked via del.icio.us: Top 75 Network Security Tools.
-
OpenID For WordPress
Update: 12th October 2007 - this project is to be considered abandoned. Please see How To Set Up OpenID For WordPress Comments instead. Thanks for the support and for your interest in OpenID.
THIS IS ALL HORRIBLY OUT OF DATE. THE DOWNLOAD LINKS DON'T WORK, I KNOW. GET OVER IT. More seriously now, I am โฆ -
More Geeky Fun - Hack Security Cameras
This was one of my most-popular articles in 2005. If you enjoyed it, you might also enjoy:
The Ten Weirdest Sex Toys I've ever seen (2009)!
A dirty-looking calendar I found at work (2011).
My beliefs about why it's wrong to lie to children about Santa (2009), complete with pictures of naughty elves. โฆ -
Security Through Obscurity Reaches A New Low
PowerPizza! It's a laptop bag that looks like a pizza box! No longer do you have to worry about your attractive laptop being an easy target for thieves - who'd want to steal a pizza box?
Fucking crazy. But I love it.


