avatar

Account Security is Broken

Firewalls Don't Stop Dragons Podcast
Firewalls Don't Stop Dragons Podcast
Episode • Mar 25, 2024 • 1h 3m
Passwords, two-factor authentication and even passkeys don't matter if you can access someone's account by answering three simple account recovery questions. Also, just about every account today has a way to reset your password, no matter how strong it is, if you can gain access to someone's email account. Until we can remove these weak links, it doesn't matter how secure our regular authentication schemes are.



In the news: old A&T breach data is making the rounds; Apple Silicon chips have a security flaw baked into the hardware; two very popular digital safe locks come with backdoor codes; Twitter/X is failing to properly check posted links that redirect to scam sites; a court rules that external continuous camera surveillance of your house doesn't require a warrant; searches for VPNs spike after PornHub pulls out of Texas; a blockbuster NY Times article brings much needed attention to data collection in cars; AirBnB implements a blanket camera ban.



And I announce a killer new patron promotion! Click this link! https://fdsd.me/promo424



Article Links




[restoreprivacy.com] AT&T Investigating Potential Breach Following Leak of 73.4 Million Records https://restoreprivacy.com/att-investigating-breach-following-leak-of-73-4-million-records/

HaveIBeenPwned.com: https://haveibeenpwned.com/ 





[9to5Mac] Unpatchable security flaw in Apple Silicon Macs breaks encryption https://9to5mac.com/2024/03/22/unpatchable-security-flaw-mac/



[404media.co] Massively Popular Safe Locks Have Secret Backdoor Codes https://www.404media.co/massively-popular-safe-locks-have-secret-backdoor-codes/



[Lifehacker] It's Not Safe to Click Links on X https://lifehacker.com/tech/its-not-safe-to-click-links-on-x



[Gizmodo] The Feds Can Film Your Front Porch for 68 Days Without a Warrant, Says Court https://gizmodo.com/feds-can-film-your-front-porch-without-warrant-1851352414



[CNN] Searches for VPNs spike in Texas after Pornhub pulls out of the state https://www.cnn.com/2024/03/15/tech/vpn-searches-spike-texas-pornhub



[The New York Times] Automakers Are Sharing Consumers’ Driving Behavior With Insurance Companies https://www.nytimes.com/2024/03/11/technology/carmakers-driver-tracking-insurance.html



[Lifehacker] Airbnb's New Security Camera Ban Is a Big Deal https://lifehacker.com/tech/airbnbs-new-security-camera-ban



Tip of the Week: https://firewallsdontstopdragons.com/account-security-is-broken/




Further Info




Become a Patron! (promo): https://fdsd.me/promo424 



Lock & Code Podcast: https://www.malwarebytes.com/blog/podcast/2024/03/securing-your-home-network-is-long-tiresome-and-entirely-worth-it-with-carey-parker-lock-and-code-s05e07



Send me your questions! https://fdsd.me/qna 



Check out my book, Firewalls Don’t Stop Dragons: https://fdsd.me/book 



Subscribe to the newsletter: https://fdsd.me/newsletter 



Get your Firewalls Don’t Stop Dragons Merch! https://fdsd.me/merch 



Give the gift of privacy and security: https://fdsd.me/coupons 



Generate secure passphrases! https://d20key.com/#/ 




Table of Contents



Use these timestamps to jump to a particular section of the show.




0:04:05: News preview



0:06:12: AT&T Investigating Potential Breach Following Leak of 73.4 Million Records



0:11:24: Unpatchable security flaw in Apple Silicon Macs breaks encryption



0:16:34: Massively Popular Safe Locks Have Secret Backdoor Codes



0:21:57: It's Not Safe to Click Links on X



0:30:28: The Feds Can Film Your Front Porch for 68 Days Without a Warrant, Says Court



0:33:28: Searches for VPNs spike in Texas after Pornhub pulls out of the state



0:38:35: Automakers Are Sharing Consumers’ Driving Behavior With Insurance



0:47:36: Airbnb's New Security Camera Ban Is a Big Deal



0:49:57: Tip of the Week: Account Security is Broken



0:55:49: Dragon Coin promotion details

Switch to the Fountain App