BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] Most common (or Most important) privacy leaks
- Subject: [Discuss] Most common (or Most important) privacy leaks
- From: me at mattgillen.net (Matthew Gillen)
- Date: Tue, 17 Feb 2015 13:29:55 -0500
- In-reply-to: <54E37F9E.9040001@borg.org>
- References: <BN3PR0401MB12046B091F0FA6E67DDB34A2DC2F0@BN3PR0401MB1204.namprd04.prod.outlook.com> <54E366FE.3060806@borg.org> <BN3PR0401MB1204BCFBB4B81B46A3F6A020DC2F0@BN3PR0401MB1204.namprd04.prod.outlook.com> <54E37F9E.9040001@borg.org>
On 02/17/2015 12:51 PM, Kent Borg wrote: > I think the only way to fix the password problem is to get people to > discard security theater and think and understand and be disciplined. > But if you can fix the password problem, I think the next problems > ~start~ to fix themselves. > > But I don't know, because everyone does passwords wrong. Most of the people I want to "think and understand" are actually the people running systems that need passwords and coming up with obnoxious requirements for passwords that essentially force you to write everything down. You can make people choose good passwords, but you can't make them have good habits. The only way to solve the password problem is to do away with them. There are all manner of physical tokens that can be used (SecurID, SmartCards, etc) in conjunction with a "something you know"/PIN that can actually be memorized. Apparently this isn't so far fetched. Banks in Germany (and now some in the US) give their customers SecurID tokens to use for login and ACH transfers. I would love if there were a way to marry OpenID with SmartCards/certificates... (maybe there is, I haven't paid much attention to OpenID in a while) Matt
- Follow-Ups:
- [Discuss] Most common (or Most important) privacy leaks
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Most common (or Most important) privacy leaks
- References:
- [Discuss] Most common (or Most important) privacy leaks
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- [Discuss] Most common (or Most important) privacy leaks
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Most common (or Most important) privacy leaks
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- [Discuss] Most common (or Most important) privacy leaks
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Most common (or Most important) privacy leaks
- Prev by Date: [Discuss] Most common (or Most important) privacy leaks
- Next by Date: [Discuss] Most common (or Most important) privacy leaks
- Previous by thread: [Discuss] Most common (or Most important) privacy leaks
- Next by thread: [Discuss] Most common (or Most important) privacy leaks
- Index(es):