March 20, 2024, 12:03 a.m. | TWiT

Security Now (Audio) twit.tv


  • Voyager 1 update

  • The Web turned 35 and Dad is disappointed

  • Automakers sharing driving data with insurance companies

  • A flaw in Passkey thinking

  • Passkeys vs 2fa

  • Sharing accounts with Passkeys

  • Passkyes vs. Passwords/MFA

  • Workaround to sites that block anonymous email addresses

  • Open Bounty programs on HackerOne

  • Steve on Twitter

  • Ways to disclose bugs publicly

  • Security by obscurity

  • Something you have/know/are vs Passkeys

  • Passkeys vs TOTP

  • Inspecting Chrome extensions

  • Passkey transportability

  • Morris the Second

Show Notes - https://www.grc.com/sn/SN-966-Notes.pdf


Hosts: Steve Gibson …

2fa accounts addresses anonymous anonymous email block bounty chrome companies data driver data driving email extensions flaw hackerone help & how to iab19 insurance insurance companies mfa mikah sargent morris multi-factor authentication open bounty passkey passkeys passwords security security now sharing steve steve gibson technology the web thinking tim berners-lee totp twit twitter update voyager voyager 1 web workaround

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Senior InfoSec Manager - Risk and Compliance

@ Federal Reserve System | Remote - Virginia

Security Analyst

@ Fortra | Mexico

Incident Responder

@ Babcock | Chester, GB, CH1 6ER

Vulnerability, Access & Inclusion Lead

@ Monzo | Cardiff, London or Remote (UK)

Information Security Analyst

@ Unissant | MD, USA