AppSec – InfoSec the Pizza Boxes, et al.

This blog is inspired by an interesting discussion on twitter between Raf Los (Wh1t3Rabbit), Jeremiah Grossman (jeremiahg), Barry Dorrans (blowdart) Jack Daniel (jack_daniel), securityninja (no real name known David Rook) and me chiming in. The discussion started with a simple

Passwords–Oh how I hate thee…

Simple title, complex issue. Username-password (U/P) schemes are the oldest form of authentication on the net, and many agree they are getting weaker all the time. The cause of this weakness is human nature with regards to how you go

