亚愽申请
嗨,我是特洛伊·亚愽申请亨特(Troy Hunt),我写了这个博客,跑步“我已经被PWNEND”,并且是Microsoft地区总监和MVP
四年前,我开始通过一组API来自由地搜索世界各地的各个政府的领域。今天,我很高兴欢迎印度尼西亚第33届政府!截至目前,在国家网络和加密货币局下管理的印尼国家证书已完全访问这项服务,以帮助保护该国境内的政府部门。印度尼西亚的包容标志着第一个接受这项服务的亚洲国家,并期待着将来全球更多的。
我以某种方式在本周的视频中爆炸了一个小时和四分之一,并在CTARS / NDIS数据泄露方面进行了大量讨论,然后实时“让我们看看大惊小怪的内容”,有消息称我们州的数字驾驶执照之一(DDL)很容易原谅。我认为,当通过如何平衡的镜头看,整个讨论实际上真的很有趣,数字化的许可与物理许可相比。如您所见,我认为关于此的报道已被夸大了……薄弱的加密密钥似乎确实是一种监督,而新南威尔士州服务对批评的反应充其量只是乏味的。让我们看看其他州的发展吧,...
So I basically spent my whole day yesterday playing with Ubiquiti gear and live-tweeting the experience This was an unapologetically geeky pleasure and it pretty much dominates this week's video but hey, it's a fun topic. Still, there's a bunch of data breach stuff up front and as I write this, 25M more records courtesy of the MGM breach are making their way up into HIBP. Get ready for a bunch of notification emails going out on that one. Here's this week's video: ReferencesFinally worked out how to handle the MGM breach (it's loading now as a new breach to ensure HIBP subscribers are appropriately notified)The Ubiquiti G4 PTZ is a mighty looking camera! (it'll take a professional to...
数据泄露,3D打印和密码 - 本周通常的各种事情。更具体地说,我知道有很多人一直在等待的非常酷的密码下载器,现在我们终于发布了。It hits the existing k-anonymity API over 1 million times and that API is already going on 2 billion requests a month so I'm kinda curious to see what happens if everyone starts running the downloader at the same time... ReferencesThis is a much better guide to what causes a 3D printer hot end to leak out the top of the heat block (the image there makes easy to understand)Since I broke the heater cartridge anyway, a Revo 6 should...
就在圣诞节之前,有望启动一个完全开源的PWNED密码,其中包含来自FBI和NCA的新鲜数据的供电,终于实现了。我们推出了代码,发表了博客文章,将自己尘土飞扬,仅此而已。有点 - 剩下的一件事... K-匿名的API很可爱,这不仅是我说的,这是人们用脚投票:这已经是我12月的博客文章的数量,仅5个月前到一天。It's also just a rounding error off a 100% cache hit ratio too But the bit that remained was the promise I made in that last blog post: Lastly, as of right...
本周的短暂距离随着前7天的消失,Auscert和其他承诺消失了。geez不仅可以回来参加活动,而且在那里进行社交并参加所有倾向于随之而来的相关事物。I'll leave you with this tweet which was a bit of a highlight for me, having Ari alongside me at the event and watching his enthusiasm being part of the industry I love At #AusCERT with Ari for “take your son to work” day I’m up next on stream 2 at 14:45 talking about Pwned Passwords, the FBI, the NCA and giving the whole thing over to the community, come say hi! https:...
它像往常一样恢复了业务,泄露更多的数据,对它们的处理不良以及更多的物联网痛苦。我认为在所有这些方面,我的一部分只是喜欢挑战和解决破碎的事情的机会。Or maybe I'm just a sucker for punishment, I don't know, but either way it's kept me entertained and given me plenty of new material for this week's video ReferencesThe book is almost ready to launch! (I've totally rewritten the intro, tweaked a bunch of the stories and added more - hopefully only a month off go-live)My fallback position for the IoT not working is literally climbing over the wall (I'm going to solve - and...
Didn't get a lot done this week, unless you count scuba diving, snorkelling, spear fishing and laying around on tropical sand cays This week is predominantly about the time we just spent up on the Great Barrier Reef which has very little relevance to infosec, IoT, 3D printing and the other usual topics. But as I refer to in the guitar lessons blog post referenced below, I share what I do pretty transparently and organically and this week, that's what I want to talk about. So, either enjoy it or skip it until next week when I'll back to business as usual ReferencesI followed Lars' guidance and installed the physical mailbox sensor (so far, I'm unhappy with it, more next...
好吧,这是一个不寻常的结局。我的鼠标和键盘都决定在本周视频结束时立即下车,没有任何控制,就无法结束直播!我借来的孩子的有线设备最终得到了控制,后来发现蓝牙突然决定死亡而没有任何警告。我当然不会更新中列中驱动器或类似的驱动程序……无论如何,除此之外,本周像往常一样,享受!我使用新无人机拍摄的Refencesthe镜头很棒!(这很疯狂,这是对这个小事情的困扰)我很失望MailChimp停止为2FA用户提供折扣...
多年以来,我为尝试披露数据泄露的时间泄露给受影响的公司而感到遗憾。到目前为止,这是我被PWEND(HIBP)处理漏洞时最耗时的活动,坦率地说,这是我能想象的最令人不快的任务。查找联系方式很难。得到答复很难。没有一个组织只是自动认为您试图将其击倒是很难的。实际上,我认为我会端到端记录该过程,并公开分享它,以帮助证明该过程有多痛苦。我很久以前就提起了(所谓的)Avvo在“太艰难”篮子里破裂,只是...