meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, February 8th 2017

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 8 February 2017

⏱️ 7 minutes

🧾️ Download transcript

Summary

Daily 5 min infosec news summary. News, patches, vulnerabilities and trends in information security. Emoji Passwords; iOS Apps and TLS; Web Bluetooth; Spoofing GMail

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, February 8th, 2017 edition of the Sandton and Storm Center's Stormcast.

0:07.0

My name is Johannes Ulrich and the day I'm recording from Jacksonville, Florida.

0:11.6

In order to make a password difficult to crack, there are kind of two options.

0:16.3

You can make it very diverse, meaning lots of different types of letters and numbers, special

0:22.1

symbols, and you can also make it long. Now one way to possibly increase the

0:28.2

diversity of letters that you're using is by including emojis or other

0:32.3

Unicode characters in your password. In the past this has been quite of difficult because keyboards don't

0:39.6

provide easy access to these characters, but that has been changing a lot of mobile devices,

0:47.1

in particular the touchscreen ones, make it pretty easy to type emojis or include them

0:52.8

in your keyboard. Also, of course, now some of the more recent

0:57.6

Apple laptops have this special touchbar, which can be used to type emojis. So why not use

1:05.0

them for a password? I was playing around a little bit with this today, and it actually looks like

1:10.4

it's possible.

1:11.7

A little bit critical here that you're hashing your data before you're inserting it into the database.

1:18.8

Then the database no longer matters really.

1:22.9

Otherwise, it's really kind of difficult to get all the character sets lined up between database and

1:29.9

web front end. You often see this and we still have problems with this on our site sometimes

1:36.6

where certain foreign characters are so don't show up correctly on this site. So if you have been

1:42.8

successful with this either in creating a site that

1:45.9

does allow emojis for passwords or if you have used them on a site yourself, I would be

1:52.6

interested in to hear if you are willing to share your experience. And then a correction I forgot

1:59.3

yesterday on Monday. I think it was. I talked about the timer,

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.