Bryan Chaffin and John Martellaro join Jeff Gamet to talk about Twitter’s plain text password list, and a petition to recall and replace the Touch Bar MacBook Pro’s built-in keyboard.
Security
PSA: Twitter Recommends Password Reset after Discovering Internal Bug
That “bug” essentially stored passwords unmasked—which is utterly awful—though the company said there was no known breach of this info.
iOS: Create an iPhone SIM PIN to Further Safeguard Your Device
It’s a good preventative measure that can be included as part of our stolen iPhone guide.
How to Remove the New Mac Flash Malware 'Crossrider'
This strain of Crossrider comes in the form of a fake Adobe Flash Player installer.
Apple Patches Privileges, UI Spoofing Flaws with macOS 10.13.4 Security Update 2018-001
Along with iOS 11.3.1 for the iPhone and iPad, Apple released macOS 10.13.4 Security Update 2018-001 on Tuesday. The Mac update fixes security issues related to privileges and UI spoofing.
Cybersecurity Tech Accord: 34 Tech Companies Just Promised a Bunch of Nothing
The Accord has gotten some positive headlines, but Bryan Chaffin doesn’t think the announcement stands up to logical scrutiny.
Cybersecurity Tech Accord, Cyberwar Is Now, Social Network Inertia - ACM 458
In this episode, Bryan Chaffin and Jeff Gamet dissect the Cybersecurity Tech Accord, a pledge by 34 tech companies to do something vague and unlikely. The timing for the announcement is somewhat interesting because we are in the middle of an undeclared shadow cyberwar. They cap the show analyzing what it might take for any new social network to supplant Facebook.
GrayKey Underscores Why We Need Strong iPhone Passcodes
The GrayKey box is available only to law enforcement, but it’s a perfect example of why strong passcodes for our iPhones are so important.
iPhones, Strong Passcodes, and GrayKey - TMO Daily Observations 2018-04-17
John Martellaro and Andrew Orr join Jeff Gamet to talk about why longer iPhone passcodes are becoming more important, plus they discuss the GrayKey iPhone hacking device available to law enforcement.
How to Set an Alphanumeric Passcode on Your iPhone or iPad
A six-digit passcode for your iPhone or iPad is good, but if you want to make is really difficult for anyone to hack into your device you need an alphanumeric passcode. Here’s how to set one up.
WhatsApp: How to Enable Two-Step Verification
WhatsApp may give you end-to-end encryption for your conversations, but it’s stunningly simple to log into your account unless you enable two-step verification. Read on to learn how.
Review: CloudMounter for Mac Mounts and Encrypts Cloud Services
If you ever wanted to copy how iOS 11’s Files app manages your cloud storage, CloudMounter for Mac is the answer.
New Web Authentication Tech, Apple Lands Foundation TV Series - TMO Daily Observations 2018-04-11
Kelly Guimont and Andrew Orr join Jeff Gamet to look at a new Web API that could make passwords obsolete, plus they share their thoughts on Apple landing a deal for Asimov’s Foundation series for Apple Music.
Companies Committing to User Privacy, Apple's R&D Efforts - TMO Daily Observations 2018-04-10
John Martellaro and Andrew Orr join Jeff Gamet to discuss the push to get tech companies on board with user security pledges, and to talk about Apple’s R&D efforts.
Facebook's Powerful Draw, Limiting Online Tracking - TMO Daily Observations 2018-04-05
Andrew Orr and John Martellaro join Jeff Gamet to discuss how Facebook works to hold our interest, and talk about ways to limit how much the social network tracks us.
macOS High Sierra: 3 Ways to Sandbox Facebook for Optimal Privacy
We won’t go so far as to suggest using a virtual machine just for Facebook, because at that point you might as well stop using it. But there are smaller steps you can take.
Windows versus Mac Security, Listener Comments - TMO Daily Observations 2018-04-04
John Martellaro and Kelly Guimont join Jeff Gamet to look at the state of Windows 10 security versus macOS, plus they respond to listener comments on Jeff’s HomeKit fail.
TMO Background Mode Interview with Tidbits Security Editor Rich Mogull
Rich Mogull has twenty years experience in information security, physical security, and risk management. He specializes in data security, application security, emerging security technologies, and security management. Prior to founding Securosis, Rich was a Research Vice President at Gartner on the security team where he also served as research co-chair for the Gartner Security Summit. Currently, he is the security editor at Tidbits. We chatted about Rich’s career, then delved into some security issues of interest to Apple customers: the relative security of macOS vs. Windows 10, the security of iOS, whether AES-256 encryption is still “good enough,” iCloud security, and the technical feasibility of an unhackable backdoor into our iPhones for law enforcement. If you’re interested in all things security, this is the show for you.
MyFitnessPal Data Breach Hits 150 Million Users
The nutrition logging service MyFitnessPal just uncovered a massive data breach that impacts 150 million users.
macOS: How to Add a Screen Saver Icon to Your Dock
If you want to lock your Mac’s screen quickly when you’re walking away from it, there are lots of ways you could do so. In this Quick Tip, we’ll give you a few suggestions, but we’ll also show you how to add a shortcut to your screen saver to your Dock, which’ll mean a one-click way to lock your Mac when combined with certain security settings. We’ve got you covered!
Changes to Mac Clipboard Bring Image Conversion and Security Fixes
Among the updates include image conversion and certain security enhancements.
Facebook Privacy Tips and More - TMO Daily Observations 2018-03-22
Bryan Chaffin and Andrew Orr join Jeff Gamet to share some tips on managing your Facebook account and privacy settings.
Apple's microLED Plant, iPhone Hacking GrayKey - TMO Daily Observations 2018-03-19
John Martellaro and Bryan Chaffin join Jeff Gamet to talk about Apple’s microLED facility in California, plus iPhone security and the GrayKey hacking device.