57°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • david reeves https://twitter.com/dreeves   •   Sep 11
    Like I wanted to watch my phone bill. On video.
    Aaron Parecki
    of all the problems in the world that currently need solving...
    Portland, Oregon • 73°F
    1 like
    Thu, Sep 10, 2020 8:13pm -07:00
  • david reeves https://twitter.com/dreeves   •   Sep 11
    Aaron Parecki
    wait this is a real thing?

    a real person sat down and said how can we innovate bills?
    Portland, Oregon • 73°F
    Thu, Sep 10, 2020 8:11pm -07:00
  • david reeves https://twitter.com/dreeves   •   Sep 11
    Everyone:

    @ATT:
    Aaron Parecki
    but what does it even mean
    Portland, Oregon • 73°F
    3 replies
    Thu, Sep 10, 2020 8:09pm -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    WOW. You should put that on a Tshirt. “IT Security… it’s best if you don’t think about it”
    Aaron Parecki
    I just might do that haha. The shirt i'm wearing today says "I find your lack of security disturbing"
    Portland, Oregon • 71°F
    2 likes
    Thu, Sep 10, 2020 8:57am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    And the cookie doesn’t verify the machine it’s on? You’d think it’d only work if the MAC address and IP address were a match. This seems so very insecure.
    Aaron Parecki
    tbh it's like the "security" involved in writing checks, it's best if you don't think too much about it
    Portland, Oregon • 68°F
    1 like 2 replies
    Thu, Sep 10, 2020 7:35am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    And the cookie doesn’t verify the machine it’s on? You’d think it’d only work if the MAC address and IP address were a match. This seems so very insecure.
    Aaron Parecki
    The browser doesn't have access to the MAC. Google *could* (and probably is) checking the IP address, but it's all heuristics because your IP address may change at any time, e.g. cell phones have very unstable IPs, hop in a plane and land with an IP from another country, etc.
    Portland, Oregon • 68°F
    Thu, Sep 10, 2020 7:34am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    That is CRAZY that all you need is the cookies to access any account — especially a google one! So if I just sent you my cookies folder… you’d have access to anything I was logged into?!
    Aaron Parecki
    💯

    There aren't really any other tools browsers can use for this right now. The process of logging in looks like basically: you type your password in google, google gives you back a cookie, your browser makes a request with that cookie and the server knows who it's for.
    Portland, Oregon • 68°F
    5 replies
    Thu, Sep 10, 2020 7:25am -07:00
  • Gary https://twitter.com/every_daydad   •   Sep 10
    So would have two separate email accounts help? One solely for the YouTube channel, and one for business in case of a malignant file?
    Aaron Parecki
    Interestingly that doesn't even matter for this since it wasn't the "normal" phishing style attack. Don't open files you download is the only safe thing, or open them on a machine that isn't logged in to anything. That obvs isn't practical, so it's a lot harder in practice.
    Portland, Oregon • 68°F
    1 like
    Thu, Sep 10, 2020 7:15am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    And the browser cookies had the passwords stored in a way that was readable?!
    Aaron Parecki
    No, the cookies are how the browser is logged in to google. No passwords needed, 2fa doesn't matter. I'm thinking I might need to make a video on this.
    Portland, Oregon • 68°F
    2 likes 9 replies
    Thu, Sep 10, 2020 7:08am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 10
    Damn. So the download was a virus, or keylogger? You on Mac or PC? We Mac users like to think we’re immune to stuff like this but probably not…
    Aaron Parecki
    It was a windows executable disguised as a .scr file, no keylogger needed for this, it was able to pick up the browser cookies from the hard drive. It could have happened on Mac just as easily.
    Portland, Oregon • 68°F
    1 like 11 replies
    Thu, Sep 10, 2020 7:07am -07:00
  • Kevin - Basic Filmmaker https://twitter.com/BasicFilmmaker   •   Sep 9
    LOL @aaronpk when we both realize we don’t follow each other. 😂😂😂
    Aaron Parecki
    I was gonna ask how you're doing with all the fires nearby! Couldn't remember how close you are to that area
    Portland, Oregon • 88°F
    1 like 1 reply
    Wed, Sep 9, 2020 4:52pm -07:00
  • Lee Zavitz https://twitter.com/ZavitzLee   •   Sep 9
    I’m only dealing with faxes from now on.
    Aaron Parecki
    fun fact not even fax machines are safe from viruses https://blog.checkpoint.com/2018/08/12/faxploit-hp-printer-fax-exploit/
    Portland, Oregon • 89°F
    Wed, Sep 9, 2020 4:49pm -07:00
  • Lee Zavitz https://twitter.com/ZavitzLee   •   Sep 9
    My email and YouTube account was hacked and they are deleting my videos. I had two factor authentication. @ytcreators can you help??
    Aaron Parecki
    omg what a mess! So sorry this is happening to you! If you aren't completely overwhelmed I'd love to help get to the bottom of how this happened. Online security is my jam. Feel free to DM me.
    Portland, Oregon • 90°F
    5 likes
    Wed, Sep 9, 2020 3:29pm -07:00
  • Sara 🍑y https://twitter.com/saradietschy   •   Sep 9
    There is one app on this page that just did a hideous rebrand and I’m not going to name names but you’re allowed to guess which app
    Aaron Parecki
    Glad I'm not the only one! 🧐⏱
    Portland, Oregon • 68°F
    Wed, Sep 9, 2020 7:53am -07:00
  • Photo - “Wear a damn mask” - Joseph https://twitter.com/photojoseph   •   Sep 8
    For you YouTubers who script and use a teleprompter… how many run-throughs does it take before it doesn’t sound/feel like you’re reading off a teleprompter? Curious; I’ve been using one more and more. It’s such a different approach. Takes some getting used to!
    Aaron Parecki
    I use a teleprompter about 50% of the time, writing a script takes so long I just skip that and jump straight to recording sometimes.

    I do just one take off the prompter though, I don't think it comes off looking like I'm reading.
    Portland, Oregon • 64°F
    2 likes 1 reply
    Tue, Sep 8, 2020 7:38am -07:00
  • Daniel Schildt https://twitter.com/autiomaa   •   Sep 7
    This one is for iOS https://github.com/aaronpk/Overland-iOS but you can find similar tools for Android with a bit of searching, most likely.
    Aaron Parecki
    There's a port of Overland for Android now too! It's linked from that readme
    Portland, Oregon • 63°F
    Mon, Sep 7, 2020 6:23am -07:00
  • Sara 🍑y https://twitter.com/saradietschy   •   Sep 6
    omg yal remember this https://youtu.be/jofNR_WkoCE
    Aaron Parecki
    never forgot! One of my favorite karaoke songs 😂😂🤣🦊
    Portland, Oregon • 67°F
    3 likes
    Sat, Sep 5, 2020 9:52pm -07:00
  • Randall Degges https://twitter.com/rdegges   •   Sep 5
    This long holiday weekend is just the amount of time I needed to relax, clean my place, ebay some old stuff lying around, and catch up on email. So thankful to have a small break =)
    Aaron Parecki
    I dunno that sounds like work
    Portland, Oregon • 67°F
    2 likes 1 reply
    Sat, Sep 5, 2020 9:48pm -07:00
  • bix https://micro.blog/bix   •   Sep 5

    @aaronpk What's weird though is the distancing on transit was supposed to have dropped from 6' to 3', so I don't know why there are still whole seats blocked on that. @bogart

    Aaron Parecki
    I think the seats are less than 3 feet apart so there's no way to have people in each row. I did frame this shot specifically to maximize the number of 🚫 signs tho
    Portland, Oregon • 75°F
    Sat, Sep 5, 2020 3:28pm -07:00
  • bogart https://micro.blog/bogart   •   Sep 5

    @aaronpk This makes sense but it still surprised me. I haven’t been on TriMet in so long. I used to be on it every day.

    Aaron Parecki
    Same. First time riding it since March! Finally broke down and went to my 3-month overdue dentist appointment.
    Portland, Oregon • 59°F
    Sat, Sep 5, 2020 8:51am -07:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv