<div dir="ltr"><div dir="ltr"><br></div><div class="gmail_quote gmail_quote_container"><div dir="ltr" class="gmail_attr">On Fri, Jul 31, 2026 at 1:01 PM Nicko van Someren <<a href="mailto:nicko@nicko.org">nicko@nicko.org</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">On Jul 31, 2026, at 02:17, Roland Ionas Bialke <<a href="mailto:webmaster@pro-wrestling.biz" target="_blank">webmaster@pro-wrestling.biz</a>> wrote:<br>
...<br>
> It sounds like the door opener device, where you have to enter a 4-digit code. At first it is 4^10 trys, but then - after a certain time of use - there is an abrasion on the buttons. So it is reducing the trys to 4^4.<br>
<br></blockquote><div><br></div><div>One summary was it leveraged public hacked account data; twice.<br>Key management and account info just got more serious. Yes it already was.<br>Multi factor -- for sure.<br>It is tempting to use easy to type keys inside a net behind a firewall but firewalls are hard to manage.<br>VPN from inside a home router especially with service provider hardware seems to have more<br>risk than I would have considered a short time ago. We often discuss the mixed agenda of government<br>standards. Never forget to use plural in all these discussions.<br> <br>Often a validation question was a pet name for password recovery. Family pet names are quite public.<br>Any tactic I discuss here becomes an attack surface. Old curse... these are interesting times.<br>Clusters all require shared secrets but many secrets should not be shared. Diplomatic codes were once <br>hand delivered. <br>--</div><div>Tom</div><div><br></div></div></div>