Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile
Brian Wilson (@[email protected])

@brianwilson

Husband, Father, Infosec @ SAS, Linux/Maker/Gadget/Automation guy. Views are my own and do not represent those of my employer. GPG KeyID 0x3DAECE84E841D6E3.

ID: 1195601

linkhttp://bubba.org calendar_today15-03-2007 01:42:38

5,5K Tweet

578 Followers

265 Following

Brian in Pittsburgh (@arekfurt) 's Twitter Profile Photo

People who think security keys are a universally acceptable answer to massively boosting adoption of better MFA methods than SMS have likely not been around that many small org owners or worked at non-tech medium or large orgs. :) The conversation about them can go like this:

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

Genuinely interested in the thought process of our government when our accounting department gets an email from secureemail.federalreserve.com. NOT a .gov. Why should we trust this and not think it's a phish? It sure looks like a good phish. Federal Reserve @JenEasterly

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

And to think, there are people in this same camp that still want law enforcement to have a back door to encryption technology. What's the difference? x.com/libertysafeinc…

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

Only feature I'm excited about on IOS17 is the sharing of Airtags with up to 5 people. This also works with $7 non-Airtag "Find My" capable tags from Aliexpress.

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

First print off the Bambu Lab A1 Mini using some 2 year old filament with a generic PLA profile. 16 minutes on the fastest speed. Only caveat is you will not be able to work at the same table if you plan on printing on the highest speed; it needs a seatbelt.

First print off the <a href="/BambulabGlobal/">Bambu Lab</a> A1 Mini using some 2 year old filament with a generic PLA profile. 16 minutes on the fastest speed. Only caveat is you will not be able to work at the same table if you plan on printing on the highest speed; it needs a seatbelt.
Matt Johansen (@mattjay) 's Twitter Profile Photo

This is a wild ride. Snowflake breached and scraped of over 400 companies data. Ticketmaster and Santander leaks this week seem to be tied to this. vx-underground and Kevin Beaumont putting out great content on it.

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

Oh my, Egnyte. You only support password and explicitly do NOT support key-based authentication for SFTP? Seems like a significant gap for a file sharing service, unless I'm missing something. helpdesk.egnyte.com/hc/en-us/artic…

Oh my, <a href="/Egnyte/">Egnyte</a>.  You only support password and explicitly do NOT support key-based authentication for SFTP? Seems like a significant gap for a file sharing service, unless I'm missing something.  helpdesk.egnyte.com/hc/en-us/artic…
Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

.NC Quick Pass please tell your website team that not permitting copy/paste in password fields as well as limiting of special characters is unnecessary and counterproductive. Please help us normalize the use of password vaults and copy/paste and less restrictive rules are a must!

Brian Wilson (@brianwilson@infosec.exchange) (@brianwilson) 's Twitter Profile Photo

.Palo Alto Networks Can PA comment as to why support does not consider the copying a valid SAML token from one machine (that meets cond. access policy) to a 2nd (that doesn't), then using that token to login on 2nd device, would permit GlobalProtect to bypass cond. access policy.