March 20, 2024, 12:03 a.m. | TWiT

Security Now (Audio) twit.tv


  • Voyager 1 update

  • The Web turned 35 and Dad is disappointed

  • Automakers sharing driving data with insurance companies

  • A flaw in Passkey thinking

  • Passkeys vs 2fa

  • Sharing accounts with Passkeys

  • Passkyes vs. Passwords/MFA

  • Workaround to sites that block anonymous email addresses

  • Open Bounty programs on HackerOne

  • Steve on Twitter

  • Ways to disclose bugs publicly

  • Security by obscurity

  • Something you have/know/are vs Passkeys

  • Passkeys vs TOTP

  • Inspecting Chrome extensions

  • Passkey transportability

  • Morris the Second

Show Notes - https://www.grc.com/sn/SN-966-Notes.pdf


Hosts: Steve Gibson …

2fa accounts addresses anonymous anonymous email block bounty chrome companies data driver data driving email extensions flaw hackerone help & how to iab19 insurance insurance companies mfa mikah sargent morris multi-factor authentication open bounty passkey passkeys passwords security security now sharing steve steve gibson technology the web thinking tim berners-lee totp twit twitter update voyager voyager 1 web workaround

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Director, Cybersecurity - Governance, Risk and Compliance (GRC)

@ Stanley Black & Decker | New Britain CT USA - 1000 Stanley Dr

Information Security Risk Metrics Lead

@ Live Nation Entertainment | Work At Home-Connecticut

IT Product Owner - Enterprise DevSec Platform (d/f/m)

@ Airbus | Hamburg - Finkenwerder

Senior Information Security Specialist

@ Arthur Grand Technologies Inc | Arlington, VA, United States

Information Security Controls SME

@ Sword | Aberdeen, Scotland, United Kingdom