Secure Account Management with Troy Hunt
Are you user accounts secure? Carl and Richard talks to Troy Hunt about all the ways you can get your accounts stolen. So what should you store and how should you store it? Troy digs into the various encryption and hashing techniques available - and the many mistakes that have been made with them. Along the way expect yet another discussion about password management, it is an endless process. And while we're at it, SQL Injection is *still* the largest vulnerability out there. Fix it first!
Guests:
Troy Hunt
Troy Hunt is a Pluralsight author, Microsoft Regional Director and MVP and a world-renowned internet security specialist. He spends his time travelling the world speaking and running workshops where he teaches developers how to break into their own systems before helping to piece them back together to be secure against today’s online threats. He’s also the creator of “Have I been pwned?”, the free online service for breach monitoring and notifications. Troy regularly blogs at troyhunt.com from his home on the Gold Coast in Australia.
Links:
- Scott Gu's Blog Post on New Azure Features http://weblogs.asp.net/scottgu/azure-machine-learning-service-hadoop-storm-cluster-scaling-linux-support-site-recovery-and-more
- Troy's Blog http://www.troyhunt.com/
- ASafaWeb https://asafaweb.com/
- Have I Been Pwned? https://haveibeenpwned.com/
- OWASP Top 10 Attacks https://www.owasp.org/index.php/Top_10_2013-Top_10
- Havij Advanced SQL Injection http://itsecteam.com/products/havij-advanced-sql-injection/