Mornings With Mark

Metadata Trails

Informações:

Synopsis

Thomas Brewster, writing for Forbes, highlighted a recent case by the DEA. The case itself isn't out of the ordinary. What is interesting is the issues raised by search warrant request for LogMeIn.com...parent company of LastPass. This password management service is used by the accused and is potentially a treasure trove of information for investigators. Not the passwords themselves, those are securely stored, hashed and salted, but the METADATA around the service's usage. Metadata and aggregate data is often ignored and overlooked by security and privacy evaluators. It's a complicated problem but one that absolutely needs to be tackled. A little bit of information from each can lead to a significant exposure. References; Thomas Brewster for Forbes on the case, https://www.forbes.com/sites/thomasbrewster/2019/04/10/what-happened-when-the-dea-demanded-passwords-from-lastpass/#5883c8877ebe search warrant request from the DEA, https://www.documentcloud.org/documents/5812557-DEA-Asks-LastPass-for-User-Data-in-Da