Ross Kinder
2.2K posts

Ross Kinder
@crewjam
A blind squirrel, who occasionally finds a nut. CTO at @getnametag, Co-founder of @groove_identity. Nerd of security, airplanes, & microphones. he/him
Ann Arbor, MI Se unió Temmuz 2008
341 Siguiendo216 Seguidores

@merill @SwiftOnSecurity Shameless plug: this is the problem we’ve been tackling at Nametag. Piggy backing on MFA works until the reason for the call is resetting MFA. (We do both agent assisted verification and self service recovery) getnametag.com
English

A very common request that gets asked is for help desk to be able to verify the identity of an employee that calls them.
The ask is usually along the lines of an API that will send a request to Microsoft Authenticator that the user can approve.
This thread shows how such an implementation can be socially engineered.
Thoughts?

English

@halvarflake I think maybe Tailscale would work. Web based not an app.
English
Ross Kinder retuiteado
Ross Kinder retuiteado
Ross Kinder retuiteado
Ross Kinder retuiteado
Ross Kinder retuiteado

Swiss prosecutors have confirmed to @TheRecord_Media that Vyacheslav Penchukov, the 40-year-old Ukrainian accused of leading the Zeus cybercrime group, has been arrested in Geneva and will be extradited to the United States. therecord.media/alleged-zeus-c…
English
Ross Kinder retuiteado
Ross Kinder retuiteado

@ryanburns Imma have to go deposit some technical books in free libraries for you to find.
English















