Sarah Palin's Email Hack

One of the big stories going around now is about VP candidate Sarah Palin’s Yahoo email account being “hacked”.  As it turns out though her email account wasn’t really hacked.  The person who broke into her account used social engineering to reset her password so they could access it.

This is a perfect example of the problem I blogged about back in January with using real information for your security questions. If Sarah Palin had not used real information when answering the Yahoo email security questions her email would not have been compromised by someone guessing her security questions.  Also keep in mind, Yahoo gives the same secuirty question challenges to everyone.  So if I want to social engineer my way into your email account I already know which security questions to start researching.

Back from Vacation – I guess

Corona on the lake We just got back from a week at the lake recently so I am now starting to get back in the swing of things.  As you can see in the picture, coming back to work wasn’t high on my priority list.

Every year we go with some friends to a cabin on probably the cleanest lake I have ever been in. The only way to get to the cabin is by boat.  We have to ferry all of our supplies over on the boat and carry the trash off each day by boat.  You have to do the trash daily or you may wake up with a bear eating you or your food.  It is a small price to pay for the relaxing atmosphere.

Define Irony

My free Gmail account allows me to have a 64 bit password.  If you can crack it, you deserve to be able to read my email.

Well what about the important stuff, like my online bank accounts?  My banking account you say, funny you should ask.  My bank limits my password to 20 characters.