Berenice Baker- Editor: Enter Quantum, AI Business

718 posts

Berenice Baker- Editor: Enter Quantum, AI Business banner
Berenice Baker- Editor: Enter Quantum, AI Business

Berenice Baker- Editor: Enter Quantum, AI Business

@BerryWrites

Editor, @Enter_Quantum and @Business_AI at @InformaTechHQ [email protected]

London Katılım Kasım 2020
576 Takip Edilen485 Takipçiler
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
BlackRoomSec
BlackRoomSec@blackroomsec·
Please share this far and wide. As far and wide as you can. NIST Password Guidelines for 2024 are in the process of being updated. This is a HUGE pet-peeve of mine (when vendors in particular are still operating like its 2017 and keep changing passwords every 60 days, STOP DOING THIS, it's outdated and has been shown to put you MORE at risk than less -- NIST explains why it does in this document, meticulously outlining user behavior**) so I'm sharing this in the hopes all of you will pass it along to your bosses. The Special Publication series governing passwords is SP 800-63 "Digital Identity Guidelines". The 2024 version is 800-63-4. Here: pages.nist.gov/800-63-4/ The companion docs are also on that link. They are 800-63A, 800-63B and 800-63C. These are different documents for different scenarios in play at your org. The previous update was in2020. The changes in the 2020 version from the 2017 version were numerous but one of them was that the password verification method should NO LONGER require passwords be changed at specific intervals (i.e. every 60 days) but in the following circumstances instead: 1. After a breach/compromise 2. User request 2024 repeats this and adds a bunch more guidlines but here is a screenshot of page 13 of the new 800-63-4 (note the # 4 after it) which outlines how your systems should now and moving forward, be handling passwords. This goes for Active Directory, too. All your systems which have passwords should align with these guidelines provided there isn't another standard or framework you must adhere to which overrules this. Most frameworks, however, have moved away from arbitrary password resets and complexity rules. **We cybersec researchers and hackers use wordlists from breaches in a variety of different ways. Hackers use them in tooling to crack passwords whereas researchers use breach dumps to see the kinds of passwords users are creating and the psychology behind them. Using complexity rules gets you the user psychology of: Password1 Password2 and so on Use phrasing instead and allow for spaces, which is important. Humans type phrases with spaces. They also mention phish-resistant methods and most vendors are on-board with MS going to be turning off all Legacy Auth next month, across all free accounts and tenancies. I'm so excited for the new changes! Ok I'm off my soapbox. Share the love! Thank you!
BlackRoomSec tweet media
English
186
1.8K
5.5K
645.8K
Berenice Baker- Editor: Enter Quantum, AI Business
Industry event organisers, I beg you, make the location of your event really obvious on the front page of the site and in any email invite. I shouldn't have to dig to find out if it's feasible, let alone desirable, to attend.
English
0
1
1
214
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
Italian deep-tech startup Rotonium plans to develop a quantum computer sturdy enough to operate in inhospitable conditions, including in space. iotworldtoday.com/quantum/startu…
English
0
1
0
805
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
The AI revolution has caused a surge in energy demand, with the electricity usage of the world’s data centers set to double by 2026. @RiverLane_io's Marco Ghibaudi says quantum computing can reverse this and build in energy efficiency from the ground up. iotworldtoday.com/quantum/quantu…
English
0
1
0
139
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
A @DARPA benchmarking program has delivered a reality check, finding quantum computers will likely provide an advantage in certain chemistry ,and materials applications but may not in finance and weather forecasting. iotworldtoday.com/quantum/darpa-…
English
0
1
1
71
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
Enter Quantum is seeking expert commentary. Topic ideas include: - Projects examining near-term or future use cases for quantum computing - National and international quantum policy - Quantum cryptography or PQC Get in touch to find out more.
English
0
1
0
69
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
.@IBM and Japan’s AIST are to strengthen their research collaboration for the industrialization of quantum technology. The partners are also targeting a quantum computer with 10,000 error-corrected qubits by 2029, according to Nikkei. iotworldtoday.com/quantum/ibm-ai…
English
0
1
0
58
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
Want a quantum computer at home? You'll have to wait a few years and have money and space to spare. This is the next-best thing and you can get one on Kickstarter for under $400. iotworldtoday.com/quantum/home-q…
English
1
1
0
56
Berenice Baker- Editor: Enter Quantum, AI Business retweetledi
Enter Quantum News
Enter Quantum News@Enter_Quantum·
Montana State University (MSU) has selected ORCA Computing to supply two on-site PT-1 quantum photonic quantum computers funded by a U.S. Air Force grant. iotworldtoday.com/quantum/air-fo…
English
0
1
0
61