— Tom Gilb, Principles of Engineering Management
— Tom Gilb, Principles of Engineering Management
Passwords are shared secrets which can be stolen.
Passkeys (WebAuthn) are *not* shared secrets and aren't phishable.
Passwords are shared secrets which can be stolen.
Passkeys (WebAuthn) are *not* shared secrets and aren't phishable.
This works because the rules we make are predictable and the possible variations, few (dozens to a few hundred) as compared with the vast solution space that would need to be searched for a "brute force" attack (billions and billions).
This works because the rules we make are predictable and the possible variations, few (dozens to a few hundred) as compared with the vast solution space that would need to be searched for a "brute force" attack (billions and billions).
#WorkOnWhatMatters #InfoSec #ThreatIntelligence
#WorkOnWhatMatters #InfoSec #ThreatIntelligence
Modern password managers use this to help users improve the security of the passwords they use at websites like yours.
Free resources to help you, below…
1/🧵
Modern password managers use this to help users improve the security of the passwords they use at websites like yours.
Free resources to help you, below…
1/🧵