Smudges Betray Your Touchscreen Passwords

I covered this low tech hack shortly after the G1 made its debut, and it’s worth repeating. Our oily finger trails betray the unlock PINs (for iPhone, iPad) and patterns (for Android) for our devices. I noticed this on both my OG iPhone and my EVO, but I wonder how often it’s actually been used [...]

1Password Adds Dropbox Support

If you read here, you already know we’re huge fans of 1Password (@1password) and Dropbox (@dropbox). For the uninitiated, 1Password keeps your multitude of credentials in a secure vault, and its browser plugins make them readily accessible when you’re browsing. It also can create secure passwords as you browse and add them to the vault. [...]

Blog: Oracle Wallet AUTO LOGIN – Common Misconception Corrected

Paul M. Wright discusses the challenges of protecting passwords while automatically invoking SQL scripts. Link to the original site

Creating an Active Directory Firewall with Oracle Virtual Directory

Inspired by recent thread of posts on other blogs about alternatives to SPML and using local AD for cloud security – I recorded a demo showing how OVD can be used to create an Active Directory firewall. So for example you could use OVD to provide secure remote access to AD data without needing to [...]

Part II – Working with WLS 10.3.1 SQLAuthenticator password algorithms

In the previous post we looked at how to configure the SQLAuthenticator password encryption options. Among other encryption algorithms we discovered that on creating a user from the WLS console, WLS would create the associated user in a database table with password “password” encrypted to: {SHA-1}W6ph5Mm5Pz8GgiULbPgzG37mj9g= …when the SHA-1 option was set. As was mentioned [...]

Has Facebook Connect Trumped Them All?

I wasn’t able to make it to Internet Identity Workshop this week because I would like to know the thoughts on Facebook Connect. It appears that more and more sites are now allowing you to use your Facebook account to authenticate you. The experience in my opinion may make this Facebook’s killer app (though my [...]

Using AIA with an 11g Database – beware uppercase password

Wella?| actually this is a post that can apply to any use of Oracle Application Server (10.1.3.x) in conjunction with an Oracle 11g database.  Starting with the 11g database, user passwords are case sensitive.  Thus you can use uppercase, lowercase, or any combination thereof in your password.  Unfortunately this can cause a problem when using [...]

Upgrading Beehive 1.3.1 to 1.4.1 – not just yet.

OK. Oracle Homes backed up, check. Database backed up, check. Beehive1.4.1 software downloaded and extracted, check. I’m in a bit of a dilemma though… Do I upgrade my 1.3.1 to 1.4.1, or just do a fresh install of 1.4.1? In my Post install config, you’ll notice I’m not quite up to configuring and testing Mail. [...]

Whose ******* idea was this?

My last two entries have been uncharacteristically Microsoft-friendly, so it’s time to restore some balance. Coincidentally, I just noticed the latest “alertbox” entry by Jakob Nielsen, about putting an end to password masking (the ******* that appears when you type a password). I actually disagree with Nielsen on this (it’s not just about shoulder-surfing, who [...]

Word of warning about 10.1.2.3 and CP3

Hello everyoneI have been monitoring and taking part in a thread (click here for thread) on the OTN Discoverer Forum concerning an issue with 8-character passwords not always being accepted in Discoverer 10.1.2.3 with CP3 installed. Oracle Support have now confirmed that this is a bug and have posted it on MetaLink as bug number [...]