Sprites mods has an interesting article about hacking the protection of a hardware authentication device: http://www.spritesmods.com/?art=secustick What’s interesting about this is that it shows how easy it is to feel like a hardware device is providing...
Explains an old trick on how to guess someone else's password without anything getting logged in the domain controller's event logs Read More...
I finally finished my Perfect Passwords book. In this book I attack much of the conventional wisdom about password policies and present new techniques for building strong passwords. For example, I think that passwords as a technology aren’t obsolete...