Per Thorsheim
banner
thorsheim.bsky.social
Per Thorsheim
@thorsheim.bsky.social
Founder of #PasswordsCon. Above average interested in passwords & digital authentication. Online since 2400baud. I do security & privacy. Want me to speak at your conference / org? Reach out!
"Thank you Elon Musk for making Grok so easy to use for both picture & video generation"

My first attempts at Grok confirms my fears - although I was happy with this result, created in seconds.
January 15, 2026 at 4:33 PM
I make the assumption Donald doesn't know about or care about any previous agreements between the US and any other country.

I also assume that Donald won't honor any agreement at any time if it doesn't benefit his personal opinion on any given day.

But still:

avalon.law.yale.edu/20th_century...
Avalon Project - Defense of Greenland: Agreement Between the United States and the Kingdom of Denmark, April 27, 1951
avalon.law.yale.edu
January 14, 2026 at 12:36 PM
So Trump writes he doubt NATO would back USA if requested?

Can *anyone* help the rambling lunatic remember history correctly when we (NATO) have aided the US when asked to?

This is shameful, given all the brave fighters that have already assisted and made the ultimate sacrifice.

Shame on DJT.
January 7, 2026 at 7:03 PM
Reposted by Per Thorsheim
"i did research" but it's patently obvious from the ?utm_source=chatgpt.com attached to all of the hyperlinks that you didn't
January 5, 2026 at 2:02 PM
Reposted by Per Thorsheim
🇩🇰🇺🇸 Danish PM Frederiksen:

"It is completely pointless to talk about the US seizing Greenland. USA has no right to annex any of the three countries that make up the Danish Realm.

Greenland and its people have made it clear they are not for sale and called on Washington to stop threatening people."
January 4, 2026 at 10:08 PM
"Only" 3 years left. 😞
January 4, 2026 at 10:36 AM
Reposted by Per Thorsheim
Either Maduro has an odd choice of pajamas, or the DEA/FBI tossed him a Nike Tech Men's Fleece Windrunner tracksuit after putting him in custody.
January 4, 2026 at 1:28 AM
I purchased 192GB 6400Mhz DDR5 RAM for NOK 9380,- in june 2025.

Price today? NOK 43800,-.

This is absolutely INSANE.
January 3, 2026 at 11:29 AM
And here we are again.

I predict that people who predict the death of passwords in 2026 will be wrong in their predictions.

My annual X/Twitter thread on this started in 2015: x.com/thorsheim/st...
Per Thorsheim on X: "Time to repeat myself: I predict that people who predict the death of passwords in 2024 will be wrong in their predictions. Here’s my annual thread on this back to 2015." / X
Time to repeat myself: I predict that people who predict the death of passwords in 2024 will be wrong in their predictions. Here’s my annual thread on this back to 2015.
x.com
December 31, 2025 at 11:42 AM
15 organisasjoner skal bidra til å håndtere digitale angrep og cyberhendelser mot Norge. Har de noen god sikkerhet selv?

Jeg har testet.

www.linkedin.com/pulse/hvem-v...
Hvem vokter vokterne?
Nasjonalt rammeverk for håndtering av digitale angrep og cyberhendelser fra Nasjonal Sikkerhetsmyndighet, sist oppdatert 25.06.
www.linkedin.com
December 17, 2025 at 11:00 AM
I had a look at email security (for IRT teams) at organizations within the Norwegian higher research & education sector. They definitely have much to learn - and act upon - in order to improve their security.

Once again using the free service internet.nl!

www.linkedin.com/pulse/email-...
Email security (for IRT teams) in the Norwegian research & education sector
Sikt - the Norwegian Agency for Shared Services in Education and Research, delivers a lot of services to the sector. They also have a public list of contact info for incident response teams (IRT) at a...
www.linkedin.com
December 11, 2025 at 11:52 PM
Happy to see that #Postfix has now got REQUIRETLS support (SMTP Require TLS Option - RFC 8689), written by @jimfenton.bsky.social and published in december 2019.

A big step forward imho, and I hope to see more client & server support for REQUIRETLS in 2026!

datatracker.ietf.org/doc/rfc8689/
RFC 8689: SMTP Require TLS Option
The SMTP STARTTLS option, used in negotiating transport-level encryption of SMTP connections, is not as useful from a security standpoint as it might be because of its opportunistic nature; message de...
datatracker.ietf.org
December 10, 2025 at 2:37 PM
Using internet.nl I was surprised and saddened when I saw that email security at Apples iCloud service seems a bit stuck a decade back in time, compared to Cloudflare & Microsoft, among others. So I wrote this article about it.

Ping @aclu.org @eff.org

www.linkedin.com/pulse/rotten...
Rotten Email Security @ Apple iCloud?
A long time ago, like back in 2015-ish, ACLU used a service created by Einar Otto Stangvik from Norway called starttls.info (doesn't exist anymore), based on my idea.
www.linkedin.com
December 9, 2025 at 11:01 PM
Maximilian Golla @maximiliangolla.com presenting "Measuring the Risk Password Reuse Poses for a University" at #PasswordsCon in Prague, December 2, 2025.

youtu.be/6dEQRwueX98
Maximilian Golla - Measuring the Risk Password Reuse Poses for a University
YouTube video by Per Thorsheim
youtu.be
December 9, 2025 at 1:16 PM
Michal Špaček @spazef0rze.bsky.social presenting his talk "Password Reuse Is a Dumpster Fire – We Brought a Hose" at #PasswordsCon in Prague, December 2, 2025.

youtu.be/AuCNgoDf-5c
Michal Špaček: Password Reuse Is a Dumpster Fire – We Brought a Hose
YouTube video by Per Thorsheim
youtu.be
December 9, 2025 at 12:32 PM
Rostyslav (Ross) Yevdiukhin presenting "OT Security meets reality" at #PasswordsCon in Prague, December 2, 2025.

youtu.be/V6B81wrlVdo
Rostyslav (Ross) Yevdiukhin - OT Security meets reality
YouTube video by Per Thorsheim
youtu.be
December 9, 2025 at 11:12 AM
Luci André Knudsen @woofie.dev presenting "How I Learned to Stop Worrying and Love ReBAC" at #PasswordsCon in Prague, December 2, 2025.

youtu.be/WfXt2J2gYz8
Luci
YouTube video by Per Thorsheim
youtu.be
December 9, 2025 at 10:28 AM
YouTube playlist with videos from #PasswordsCon in Prague, December 1-3 2025 has been created, with the first video of Niels Loozekoot available. More videos to come.

A big thank you to @nic.cz for sponsoring & hosting the event!

youtube.com/playlist?lis...
PasswordsCon Prague 2025 - YouTube
These are the videos from PasswordsCon in Prague, December 1-2, 2025. The conference was kindly sponsored and venue organized by CZ.NIC.
youtube.com
December 8, 2025 at 10:07 PM
Reposted by Per Thorsheim
Mezi vystupujícími na #PasswordsCon byl také náš kolega Jaromír Talíř. #MojeID #FIDO
December 1, 2025 at 2:16 PM
Reposted by Per Thorsheim
#PasswordsCon Prague 2025 has come to an end. After 3 amazing days most of us have headed home to our respective countries around the world. Great location, lots and lots of food, and amazing organisation & sponsorship by @nic.cz

Looking forward to Cork, Ireland, in December 2026!

nic.cz
CZ.NIC
Správce domén CZ.
nic.cz
December 4, 2025 at 5:34 PM
Hot off the #PasswordsCon press:
December 1, 2025 at 1:05 PM
December 1, 2025 at 12:42 PM
#PasswordsCon Prague 2025 livestream. Sponsored by @nic.cz

www.youtube.com/live/lyio6sQ...
PasswordsCon Prague, December 2025
Livestream from PasswordsCon, sponsored by CZ.NIC in Prague, Czech Republic, 2025.
www.youtube.com
December 1, 2025 at 8:18 AM
Hello Prague, nice to be here again!

So incredibly ready for doing #PasswordsCon number 26 since 2010!

This time with @nic.cz as sponsor, 3 full days and a stellar lineup of speakers & talks!

www.passwordscon.org/prague-2025-...
Prague 2025 Program & speakers – PasswordsCon
www.passwordscon.org
November 29, 2025 at 3:41 PM
I am honored and happy to be asked by @boblord.bsky.social to contribute & sign the open letter at hacklore.org. It is time to kill some "hacklore" - IT security advice that is now *seriously* outdated.

Please read more at the link below, and tell everyone about it.

hacklore.org
Stop Hacklore!
hacklore.org
November 24, 2025 at 7:40 PM