"This is blasphemy"
submitted by BeRed_
https://reddit.com/r/ProgrammerHumor/comments/ztkp5b/this_is_blasphemy/
@3141592f generate a secure master password, don't make one up. If I was LastPass, rather than even give people that ability, I would do something like a cryptocurrency wallet and generate a seed phrase. They can memorize it or put it in their physical wallet or whatever.
LastPass's "it would be extremely difficult to attempt to brute force" statement is misdirection baloney. We've cracked oodles of hashes with wordlists, phrase lists, and rules without ever "brute forcing" and I'm sure you too.
Doing this once - memorizing a seed phrase is 1000 times easier and more secure than "keep rotating 1000 logins so when they crack your 1337Passw0rd! they'll only have it a few months!"
97% of user-chosen PW's get cracked. Stop throwing wet band-aids on top and fix the bleeding.
@dave also see: mountains
@jfslowik We're looking for security engineers, appsec, and security software engineers.
CVE 10.0 in the Linux kernel. Credit https://twitter.com/thalium_team
https://www.zerodayinitiative.com/advisories/ZDI-22-1690/
Thankfully there appears to be another cleaning robot taking care of the mirror universe
https://social.v.st/@th/105690012399873591
The Android Team has open sourced our internal Rust Training! It's a four day course covering the full spectrum of Rust, from basic syntax to advanced topics like generics and error handling. It also includes Android-specific content on the last day such as:
- Building Android components in Rust.
- AIDL servers and clients.
- Interoperability with C, C++, and Java.
https://www.scriptjunkie.us/
#infosec #security
the rules: https://social.scriptjunkie.us/about/more#the-rules-of-social-media