Mark Denihan retweetledi
Mark Denihan
390 posts

Mark Denihan
@markdenihan
AppSec, InfoSec... All the Sec
Dublin Katılım Haziran 2009
252 Takip Edilen217 Takipçiler
Mark Denihan retweetledi

@QPARKIRELAND me and a bunch of folk are trapped in your grand canal car park, nobody answering the intercom and your support lines don't answer
English

@bethanchloes Think it's like 3 euro per ticket to hold it for a few days
English


@rugbyworldcup finally navigated the queue for rwc2023 tickets and immediately found I'd been booted out and couldn't but tickets #rwc2023 #shambles

English

@rugbyworldcup Got through the queue only to be unable to buy any tickets. Is today's allocation gone?
English

@VirginMediaIE broadband down and the service checker site isn't working! ☹️
English
Mark Denihan retweetledi

So the pitch in Fukuoka looks... interesting.
The Irish players able to bury a ball under the pitch ... which was re-turfed after the last match.
#RWCFukuoka
English

@timbuethe @FreeNow_IE No solid reason other than there being no other requirements on a password for new freenow accounts 🤷♂️ Could be other requirements
English

@FreeNow_IE If security was your top priority you wouldnt have my password stored in a way you could access it in plain text. As a precautionary measure I've stopped using your service

English

@FreeNow_IE I was almost reassured until you explained how you check password strength. Seems you described how you check if a password is correct instead. To have been able to know the composition of my password you must also be storing it in a way that you can return it to plain text
English

@markdenihan The bcrypt function is a cryptographically secure function. Even we as a company are not able to tell which password are stored there.
Checking the password strength is carried out by using bcrypt with the included salt again and then comparing the result.
2/2
English

@FreeNow_IE Jane, the issue is that you're storing customer passwords in a way that you're able to tell what they are and how complex they are. This means that anyone with access to the DB has access to the passwords. Pass this onto your security team; github.com/OWASP/CheatShe…
English

@markdenihan Hi Mark -- To protect your account all you need to do is update your password to a more secure one. Apologies for the inconvenience, Jane.
English

@eir Was on hold 15 minutes and was hung up on. Web Chat support say to ring 1901 and hope I get through.
English

@cineworld Hey, I booked tickets 40 minutes ago, got a booking number on the page but no confirmation email. "My Account" says no bookings. Did I book tickets? this is on cineworld.ie
English





