82°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Edward Robinson https://twitter.com/_edwardrobinson   •   Feb 14
    @aaronparecki Hey I was in your live stream today and I had the ?regarding using the usb out on the Atem mini to record and also stream to obs at the same time using the BM stream bridge. Just want to let u know I got it to work and I can share the info with u if u would like.
    Aaron Parecki
    Excellent! What'd you end up using to record the stream then?
    Portland, Oregon • 30°F
    6 replies
    Sun, Feb 14, 2021 1:02pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    So far this event seems legit:
    https://newsroom.spotify.com/2021-02-11/tune-in-for-spotify-stream-on/
    Aaron Parecki
    If this ends up being legit, then I'm taking away 2 things from this:

    Get your support team on the same page as your marketing agencies.

    They should have also sent this to me since I get a dozen messages a week from artists' PR agencies asking to be added to my playlist 😅
    Portland, Oregon • 23°F
    1 like 2 replies
    Fri, Feb 12, 2021 9:39pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    Hmmm...now this is a land mine.

    Anyone want me to send them a bunch of links to verify?

    @aaronpk??
    Aaron Parecki
    Oh wow, that escalated quickly...

    Now they are officially claiming to be Spotify

    Sending a bunch of clickbait links

    Asking for your physical address...
    Portland, Oregon • 23°F
    1 like
    Fri, Feb 12, 2021 9:25pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    I guess I'll find out when I hop on a zoom call with them next week, lol. It seems like they're going to set me up with a Spotify account rather than using my existing spotify account. We'll see if that's indeed the case.
    Aaron Parecki
    This is both a very confusing scam, and also a very confusing promotion if legit
    Portland, Oregon • 24°F
    1 like 1 reply
    Fri, Feb 12, 2021 5:49pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    Ah, yeah, after Lee's hack?
    Aaron Parecki
    Yeah exactly. That was some expert level social engineering right there.
    Portland, Oregon • 24°F
    1 like 3 replies
    Fri, Feb 12, 2021 5:47pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    That makes sense.

    Wait, video?!
    Aaron Parecki
    This one! https://youtu.be/bnknQ5gGvng
    Portland, Oregon • 24°F
    1 like 5 replies
    Fri, Feb 12, 2021 5:44pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    I imagine it's an issue with hiring third party marketing agencies for things. Most large companies do that.

    @markguim what do you think of this? Maybe a classic case of one hand not talking to the other?

    The fact that I have mutual connections with ppl that work there...
    Aaron Parecki
    Yeah definitely could be that. Really you’d need to get someone from @SpotifyCares to confirm this is actually the PR agency they use. I’m pretty sure @snubs and I mentioned this in our video actually 😄
    Portland, Oregon • 24°F
    7 replies
    Fri, Feb 12, 2021 5:43pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 13
    This just got more interesting. This seems to be a third party company of some sort.

    @Snubs @aaronpk

    https://www.2degreesventures.com/home
    https://www.linkedin.com/company/2-degrees-ventures/
    Aaron Parecki
    Interesting. Even if it is “legit” — as in it really is some third party company offering some sort of real service — unless they have permission from @Spotify, they can’t be going around using Spotify’s trademark in their domain and business names.
    Portland, Oregon • 24°F
    13 replies
    Fri, Feb 12, 2021 5:40pm -08:00
  • Photo “Wear the mask” Joseph https://twitter.com/photojoseph   •   Feb 12
    Anyone else got this mysterious app on their Mac? #5KPlayer which I don’t remember installing, is NOT from Mac App Store, automatically became default video player, runs in background after quitting, but is actually an iOS app (and not on my iOS devices or in my iOS app history)?
    Aaron Parecki
    Yikes, found a reference to it in this article, definitely malware https://www.zdnet.com/google-amp/article/promethium-apt-attacks-surge-government-sponsorship-suspected/
    Portland, Oregon • 25°F
    1 like 1 reply
    Fri, Feb 12, 2021 9:21am -08:00
  • Blaine Cook https://twitter.com/blaine   •   Feb 12
    My company uses your company. I have one password, don't use a password manager, and can access every service I need to do my job, and I can do that extremely securely.
    Aaron Parecki
    That's exactly what I want, but across the whole internet, oh and maybe drop the password too 😅
    Portland, Oregon • 25°F
    9 replies
    Fri, Feb 12, 2021 7:12am -08:00
  • Blaine Cook https://twitter.com/blaine   •   Feb 11
    For sure - my complaint is that we wouldn't stand for the medical profession to say "abstinence is the only way to prevent unwanted childbirth"; I'm not saying no-one should use password managers. I'm trying to say that it's our (security folks) responsibility to build better.
    Aaron Parecki
    My problem with this whole thread is that yes, of course we need something better than passwords, but also, yes, there is a lot of improvement being made right now. It's not like someone can make something that "solves passwords" and suddenly everyone will be using it.
    Portland, Oregon • 25°F
    3 likes 1 reply
    Fri, Feb 12, 2021 7:06am -08:00
  • Sara 🍑y https://twitter.com/saradietschy   •   Feb 11
    gmail text prediction is gettin kinda spooky I can't wait to type one word and then just tab tab tab tab out my entire email
    Aaron Parecki
    There's a scifi book from 10 years ago about literally this, it's a trip 😂 https://amzn.to/37oaMKb
    Portland, Oregon • 29°F
    1 like
    Thu, Feb 11, 2021 9:25pm -08:00
  • K. Mike Merrill https://twitter.com/kmikeym   •   Feb 12
    Fiber stays on if power dies? Is it dumb I didn’t know that?
    Aaron Parecki
    Depends on what's powering the other end of the fiber line. I guess mine is on a different grid, but I'm also in a weird spot between two different power companies.
    Portland, Oregon • 29°F
    1 like
    Thu, Feb 11, 2021 8:57pm -08:00
  • Shannon Morse wears a mask responsibly https://twitter.com/Snubs   •   Feb 12
    One time me and @hak5darren sent a fake Microsoft tech support scammer goatse after keeping them on the phone for an hour.
    Aaron Parecki
    👏 that is some A plus countertrolling 👏
    Portland, Oregon, USA • 30°F
    1 like
    Thu, Feb 11, 2021 4:23pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 12
    Should I play along? I’m curious now.
    Aaron Parecki
    I would if it were me! Just stay on high alert mode of course... don't download anything, don't connect any OAuth apps to anything, and click links only using an isolated computer. I'm always curious about these things!
    Portland, Oregon, USA • 30°F
    1 like 4 replies
    Thu, Feb 11, 2021 4:19pm -08:00
  • M. Brandon Lee | THIS IS TECH TODAY https://twitter.com/thisistechtoday   •   Feb 11
    I’d love to get @Snubs and @aaronpk on the scene 👀
    Aaron Parecki
    yeah I suspect you're right. I'm curious what the next play is. Maybe they send you a download link to the special "Spotify VIP" app?
    Portland, Oregon, USA • 30°F
    1 like 2 replies
    Thu, Feb 11, 2021 4:14pm -08:00
  • K. Mike Merrill https://twitter.com/kmikeym   •   Feb 11
    What’s your current setup for backing up power? (Video idea!)
    Aaron Parecki
    Clearly I need to beef it up a bit, but right now I have a UPS on the network gear and also at my desk. It can keep things powered for about 30-40 minutes, and my internet is fiber so it stays online too
    Portland, Oregon • 31°F
    2 likes 4 replies
    Thu, Feb 11, 2021 2:53pm -08:00
  • Nick Fiacco https://twitter.com/FiaccoNick   •   Feb 11
    Is there a good way to verify the identity of a public app requesting an auth code?
    Aaron Parecki
    No not really, that's why the redirect URL is so important to get right. It's not a great situation, but it would require cooperation from the OS in order to have a more secure flow. That said, it's also a relatively unlikely attack vector so people mostly don't worry about it.
    Portland, Oregon • 33°F
    1 like
    Thu, Feb 11, 2021 12:51pm -08:00
  • Nick Fiacco https://twitter.com/FiaccoNick   •   Feb 11
    Chances are I’m missing something— @aaronpk @leahculver does this make sense to either of you?
    Aaron Parecki
    Yes, you're right, but that doesn't mean PKCE is not secure. This is just an inherent limitation of public clients that can't use a client secret. PKCE does solve several attacks, but it doesn't provide authentication of the app itself.
    Portland, Oregon • 33°F
    2 likes
    Thu, Feb 11, 2021 9:58am -08:00
  • Jᵾlien Genestoux https://twitter.com/julien51   •   Feb 11
    Ideally though, an identity shouldn't have to be tied to a server, even if I own it?
    Aaron Parecki
    That's one opinion yes. There are good arguments on both sides.
    Portland, Oregon • 40°F
    1 like 6 replies
    Wed, Feb 10, 2021 7:22pm -08:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv