Farhan Nearhan ❼
farhanible.bsky.social
Farhan Nearhan ❼
@farhanible.bsky.social
Former CISO | Now Advisory/Fractional CISO | NYC | Founder ovrsr.com | A very personal account | Been to @arbys once
In your opinion, what are the chances that they actually comply with the order.
November 13, 2025 at 12:47 AM
Check out the min key length for WEP though.
November 11, 2025 at 6:31 PM
If they mean MFA with Number Matching, phishing kits have already transitioned from credential theft to authentication cookie theft. It’s not great that M365 passkey integration is limited to Windows (horribly botched on macOS and others). Seems a bit intentional.
November 11, 2025 at 1:24 PM
Reposted by Farhan Nearhan ❼
(in case you want to play around with any NYC elections data: docs.google.com/spreadsheets...)
NYC Election Analysis (from Michael Caley)
docs.google.com
November 6, 2025 at 8:20 PM
I don’t see anything related in the Chrome release notes. Maybe I’m missing something.
November 2, 2025 at 9:21 PM
“Suboptimal” doing so much of the heavy lifting here.
November 1, 2025 at 3:49 PM
Re:VPNs. I’d say there is a good amount of “correlation isn’t causation” here. Orgs which need and can afford VPNs will more heavily targeted.
October 31, 2025 at 11:26 AM
Jay Gibson is also ex FVEY intel services. Some good points about this story in the risky business podcast.
October 31, 2025 at 12:08 AM