SSCC 171 – Are you SURE that “1234” is a bad password? [PODCAST]

Here’s the latest Chet Chat podcast for your listening pleasure… Enjoy.

Twitter invites us to say goodbye to passwords, use Digits instead

Twitter’s new credentials handling scheme is called Digits, and it’s hoping that mobile app developers use it to enable their users to sign in with their phone numbers as identifiers, along with one-time passwords SMSed to the phones.

Google goes beyond two-step verification with new USB Security Key

Google’s adding support for a physical USB second factor that will first verify the login site as being a true Google website, not a fake site pretending to be Google, before it hands over a cryptographic signature.

Reminder: iCloud’s going to demand app-specific passwords from third-party apps

Yes, your third-party calendar, mail and contacts apps that don’t support Apple’s new two-factor authentication system are going to turn 10 toes up on your iThings. You’ll need app-specific passwords to get at the cloud data.

Nude celeb selfies doxing prompts 4chan to change policy

4chan says it’s now going to comply with the Digital Millennium Copyright Act (DMCA), which allows content owners to get illegally shared material removed, after it served as the launchpad for the recent nude celebrity photo theft scandal.

Apple, please provide better protection for iCloud – Secure our Selfies!

In the wake of exposed candid celebrity photos Apple recommends using two-step verification. Would this have made a difference? Should Apple strengthen its authentication options?

Is Apple slack at security on iOS? 60 Sec Security [VIDEO]

What went wrong with PayPal’s 2FA? Why did Microsoft do an email U-turn? Is Apple slack at security on iOS? It’ll only take a minute to find out…