POPULARITY
במשך השנים "התחנכנו" על כך שככל שנבקש פחות פרטים ונקל על תהליך ההרשמה, נגדיל את רשימת התפוצה. מצד אחד, הרשמה נטולת חיכוך (friction) יכולה להגדיל את שיעורי ההמרה ואולי גם לשפר את חוויית המשתמש. בדרך כלל, זו הגישה שרוב המותגים נוקטים בה: בקשה של כתובת אימייל בלבד, או לכל היותר שם וכתובת אימייל. פעמים רבות כדי למקסם את כמות ההרשמות, אפילו נשים פופ-אפים באתר.ואמנם ככל שנבקש פחות פרטים (כלומר נקטין את החיכוך) נקבל יותר הרשמות ונגדיל את כמות הנרשמים, אבל יתכן שזה יבוא על חשבון איכות הנרשמים ורמת המעורבות שלהם עליה נשלם בעתיד באתגרים הקשורים ל-deliverability ובכל הקשור ב-"Sunset Policy". לאחרונה נשמעים קולות אחרים סביב השאלה האם כדאי במקרים מסוימים דווקא להגביר את החיכוך בתהליכי הרשמה לדיוור. כלומר להפוך את ההרשמה לרשימות דיוור למעט יותר מורכבת על ידי הוספת חיכוך בשלב ההרשמה וגם בשלבים הבאים - לאורך נקודות המגע הראשוניות במסע הלקוח. בצד האחד יש הטוענים כי הפחתת חיכוך, כלומר, צמצום שלבים או פישוט הטפסים משפרת את חוויית המשתמש ומגדילה את שיעורי ההמרה. לעומתם, יש הסבורים כי פשטות יתר עלולה לפגוע באיכות הלידים ורמת המעורבות שלהם בעתיד.בואו ונסקור את שתי האפשרויות, ומה היתרונות והחסרונות של כל אחד מהם.----CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
איך לפתור בעיות עבירות אימייל באתרי וורדפרס?ניהול אתר וורדפרס, גם אם מדובר באתר הפשוט ביותר, כולל צורך בשליחת אימיילים. לדוגמא שליחת אימייל לפתיחת משתמש חדש והסיסמה שלו, הודעות שהאתר שולח אל מנהלי האתר לגבי שגיאות ואם מדובר באתר קצת יותר מורכב, שזה בדרך כלל המצב, שליחת אימיילים שונים כגון אישורי הרשמה, איפוס סיסמה, התראות למנהל האתר וללקוחות הקצה על רכישות בחנות WooCommerce, מילוי טפסי ״צור קשר״ ועוד. בעיות עבירוּת אימיילים (Email Deliverability) מתרחשות כאשר אימיילים הנשלחים מהאתר אינם מגיעים לתיבת ה-Inbox של הנמענים אלא אל הספאם, או שאינם נמסרים כלל (נדחים). בפרק זה זה אסקור מדוע בעיות כאלה קורות וכיצד לפתור אותן. ---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
פרק זה עוסק באבחנה בין שלושה סוגים של אימיילים שעסקים שולחים: שיווקיים, טרנזקציוניים ותפעוליים. אימיילים שיווקיים מיועדים לקידום מכירות ונשלחים לרשימות תפוצה גדולות, לרוב בלוח זמנים קבוע, ודורשים הסכמה ואפשרות הסרה. אימיילים טרנזקציוניים הם אישיים, נשלחים בתגובה לפעולה ספציפית של המשתמש (כגון אישור הזמנה או איפוס סיסמה), ומטרתם לספק מידע חיוני בזמן אמת. הם אינם שיווקיים במהותם וזוכים לשיעורי מעורבות גבוהים במיוחד.אימיילים תפעוליים הם קטגוריה שנמצאת בין שני הסוגים הללו. הם אינם נובעים מפעולה מיידית ואישית של המשתמש כמו טרנזקציוניים, וגם אינם נועדו למכירה כמו שיווקיים. מטרתם היא לספק מידע חשוב ושוטף על השירות או החשבון של הלקוח, כמו דוחות תקופתיים, חשבונות חודשיים, התראות על סיום תהליך במערכת, הודעות על שינויים בתנאי שירות, או עדכוני אבטחה. למרות חשיבותם לשמירה על אמון הלקוח וחווית השירות, לעיתים קרובות הם "נופלים בין הכיסאות" במערכות הדיוור, מכיוון שאינם מוגדרים בצורה מובהקת כמו השיווקיים והטרנזקציוניים.הפרדה בין סוגי האימיילים, לרוב על ידי שימוש בתתי-דומיינים נפרדים לכל סוג, חיונית לאופטימיזציה של העבירוּת (Deliverability) שלהם. אימיילים טרנזקציוניים ותפעוליים, בעלי שיעורי מעורבות גבוהים יותר, בונים מוניטין חיובי מול ספקיות האימייל, ולכן שמירתם על דומיין נפרד מהאימיילים השיווקיים (הנושאים סיכון גבוה יותר לתלונות ספאם או שיעורי פתיחה נמוכים) מבטיחה שהודעות קריטיות אלו יגיעו לתיבת הדואר הנכנס. המאמר מדגיש כי בעוד שאימיילים שיווקיים כפופים לרגולציה מחמירה (כמו דרישת הסכמה ואפשרות הסרה), אימיילים טרנזקציוניים ותפעוליים פטורים בדרך כלל מדרישות אלו, כל עוד הם נשארים אינפורמטיביים ולא מכילים תוכן שיווקי.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ואימייל מרקטינג, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
אם זה הולך כמו ברווז, נראה כמו ברווז, אז אולי זה בכלל... פישינג?
T-Bird put a call out to the BIMI group to find out more about the amazing work they're doing to guide users on how to set up BIMI authentication for their brands. When low and behold we find out our friend Matthew Vernhout is actually the Communications Chair over at the BIMI Group. Of course we had to bring him back in and find out how this supergroup of email service providers are trying to make sure you receive legitimate email. Resources: https://bimigroup.orghttps://bimiradar.com Email's Not Dead is a podcast about how we communicate with each other and the broader world through modern technologies. Email isn't dead, but it could be if we don't change how we think about it. Hosts Jonathan Torres and Eric Trinidad dive into the email underworld and come back out with a distinctive look at the way developers and marketers send email.
יש כרטיס מועדון? על האבולוציה של מועדוני לקוחותאני בעולם הדיוור, עוד כשהיו עושים אותו בדואר.מועדוני לקוחות כבר הפכו לסוג של קלישאה. מי יכול לזכור לכמה מועדונים הוא הצטרף ומה מיוחד במועדון זה או אחר?לצד בלי סוף "כלום מאותו הדבר", יש גם דוגמאות טובות למועדוני לקוחות.ב-1993 או אולי זה היה ב-1994 הייתי בהרצאה של אייזיק ולדמן, שהיה אז מנכ"ל איי-בי דאטה, שהייתה החברה הראשונה בארץ להקמה וניהול של מועדוני לקוחות. הייתה לו הרצאה מרתקת על מועדוני לקוחות. לימים יצא לנו לעבוד יחד והפכנו להיות חברים. הוא סיפר בהרצאה: שכשהיינו ילדים, אכלנו לארוחת הבוקר ביצה. זו הייתה יכולה להיות חביתה, ביצה עין או מקושקשת, אבל זו הייתה ביצה. לא היתה בעיית נאמנות. זה מה שאכלנו. מה אוכלים היום הילדים? קורנפלקס כזה או אחר. יש בלי סוף סוגים ומותגים ומי זוכה? מי נאמן למותג כזה או אחר? כל פעם יש שגעון למותג זה או אחר ואין נאמנות למותג ספציפי.מועדוני לקוחות נולדו מתוך כוונה לשמר נאמנות למותג.אם נסתכל על הפירמידה ההפוכה של משפך שיווקי קלאסי, המשולש הקטן בתחתית המשפך הוא גרעין הלקוחות המרוצים, עד כדי כך שהם ממליצים. ----CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
פודקאסט עם Dela Quist באנגליתפודקאסט עם Dela Quist בעבריתפודקאט באנגלית עם Jakub Olexa על תופעת האינטראקציות הלא אנושיות (פתיחות והקלקלות שווא)---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
CRM.BUZZ הוא בלוג ופודקאסט בעברית החוגג היום 300 פרקים העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
DMARC והטעויותעל טעויות נפוצות בהגדרות DMARC, למה זה חשוב וכיצד להימנע מהן.אחת מהדרישות המנדטוריות של ספקיות האימייל הגדולות שהוצגו ב2024 היתה להגדיר רשומת DMARC.התחלתי פרויקט מחקר עצמאי שיבדוק את רוב הדומיינים הרשומים על ידי עסקים בישראל. לפי איגוד האינטרנט בישראל ישנם כ-287 אלף אתרים בסיומת IL. בפרויקט אבחן הביטים שונים הקשורים בדיוור. בין השאר אתמקד ברשומות DMARC בדומיינים הללו. כשלב ראשון בפרויקט לקחתי את 1000 האתרים הפופולריים בישראל - לא כולם ישראלים - ובדקתי את מצב רשומת DMARC שלהם. הממצאים מפתיעים. בהמשך הפודקאסט אציג אותם...אבל קודם כל בואו נדבר על הטעויות הנפוצות הקשורות ב-DMARC ואולי עוד קודם לכן – מה זה בכלל DMARC. ---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
בחודש יולי 2025 גוגל התחילה בהשקה של פיצ'ר חדש בשם "Manage Subscriptions" בתוך Gmail, המיועד לעזור למשתמשים להשתלט על עומס הודעות הדיוור שהם מקבלים ולנהל את הניוזלטרים והדיוורים השיווקיים שהם רשומים אליהם במקום מרוכז אחד. כך Gmail כותבת: קל מאוד להרגיש מוצף מכמות עצומה של אימיילים מרשימות תפוצה שמעמיסים על תיבת האימייל שלכם: התראות על מבצעים יומיים שנראות כמו ספאם, ניוזלטרים שבועיים מבלוגים שכבר אינך קורא, ואימיילים שיווקיים מחנויות שלא קנית בהן כבר שנים. כל אלה יכולים להצטבר במהירות. עם הפיצ'ר החדש של Gmail בשם "ניהול מנויים" תוכלו לצפות ולנהל את האימיילים שהנכם מנויים עליהם במקום אחד, ולבטל הרשמה בקלות מכל מה שכבר לא רלוונטי עבורכם.עוד היא כותבת- Gmail תמיד פעלה כדי לשמור על תיבת אימייל נקייה מאימיילים לא רצויים. הדרישות שלנו מממדוורים (הוצגו ב-2024) וכלים שמערכות דיוור הוסיפו כמו "ביטול הרשמה בקליק אחד" (easy unsubscription) המעניקים שליטה גדולה עוד יותר ולבחור אילו אימיילים אתם רוצים להמשיך לקבל, ולהפסיק לקבל את האימיילים שאתם לא רוצים יותר לקבל. לצד המאמצים שלנו לשמור על תיבות אימייל בטוחות, אנו גם שמים דגש על מתן שליטה רחבה יותר למשתמשים על ההודעות שהם רוצים לקבל. כיום Gmail חוסם יותר מ-99.9% מהספאם, ניסיונות פישינג ונוזקות, ולאחרונה השקנו מנגנוני הגנה חדשים מבוססי בינה מלאכותית שהפחיתו ב-35% את כמות האימיילים שכוללים ניסיונות הונאה (פישינג).מהו מרכז המנויים החדש? האזינו לפרק.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
נתקלתי לאחרונה באתר כלשהו שהעתיק תוכן מהבלוג שלי. זו אמנם לא העתקה מילה במילה אבל ברור לי שהמקור הוא האתר שלי. זה מרגיז אבל זה בדיוק מה שקורה כעת באינטרנט מודל 2025 ומי שמעתיק הוא לא איזה אתר קיקיוני שברוב חוצפתו לוקח תוכן שירקתי דם כדי ליצור ומפרסם אותו בניסוח שונה ללא מתן קרדיט וללא קבלת רשות וללא מתן כל תמורה. מי שעושים את זה כיום מהמקפצה אלו זחלני ה-AI של גוגל והחברות עם עוזרי ה-AI.לא מזמן כתבתי מאמר נרחב שמתאר את הדרמה הגדולה סביב ההכרזה האחרונה של גוגל (05/25) שמשמעותה היא שגוגל מחסלת את האינטרנט כפי שהכרנו אותו. שההכרזה האחרונה של גוגל מבהירה את האמת המרה: גוגל בונה חומה בֶּינה לבין אתרי קניות ואתרי תוכן והגולשים יוכלו לקבל את כל התשובות ולהשלים את כל הפעולות בלי לצאת מהגן הסגור של גוגל. בצורה דומה עוזרי AI למיניהם עושים את אותו דבר. לוקחים תוכן מאתרים, חלקו מוגן בזכויות יוצרים, מאמנים את המודלים שלהם ואח"כ נותנים תשובות על בסיסו מבלי שיוצרי התוכן המקורי נהנים מכך.התופעה הזו של "אפס הקלקות" מגוגל וממנועי AI אחרים היא בעיה גדולה. ישנם לדעתי 3 פתרונות לבעיה הזו.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
ניתן להתייחס לנושא ניקיון רשימות התפוצה (list hygiene) מזוויות שונות ולעיתים אפילו קיים בלבול באופן השימוש במונח הזה.זווית ראיה אחת של ניקוי רשימות תפוצה עוסקת בעיקר בניקיון הטכני של רשימות התפוצה, הזווית השנייה בנמענים שלא נראים פעילים במערכת הדיוור, איך לזהות אותם ומה לעשות איתם? למחוק, לא לדוור אליהם או אולי לנסות להעיר אותם בדרכים שונות.---CRM.BUZZ הוא בלוג ופודקאסט בעברית העוסקים באימייל מרקטינג, עבירוּת אימיילים ושיווק.יוצר הפודקאסט והבלוג הוא סלע יפה (Sella Yoffe), מומחה בינ"ל לעבירוּת אימיילים ושיווק באימייל, מסייע למדוורים גלובליים, סטרטאפים, סוכנויות אימייל ומערכות דיוור (ESPs) עם מסירות אימייל, אימות אימייל (SPF, DKIM, DMARC, BIMI), ואסטרטגיית אימייל. קישור אל הבלוג
You think you know email deliverability? Think again. Jay Schwedelson teams up with Guy Hanson and Danielle Gallant for a rapid-fire, no-nonsense "kitchen sink" episode of Spamageddon, where they serve up 10 essential (and sometimes controversial) deliverability tips. From wild British vs. American word wars to why the Gmail Promotions tab is scarier than you think, this one's packed with sharp takes and real talk on surviving the modern inbox.Best Moments:(01:10) British vs. American word chaos—table this or talk about it now?(05:08) DMARC's “none” policy is a fraudster's dream, and it's about to become a problem for everyone.(06:23) Spam complaint rates—don't settle for the “generous” 0.3%, aim for 0.1% or lower.(07:30) Double opt-in: future mandate or marketer's nightmare?(09:41) Data hygiene starts at signup—think address validation, Captcha, and keeping bots out.(11:10) Delete those dormant subscribers or risk deliverability doom.(12:00) Use feedback loops to permanently ditch serial complainers.(13:19) Gmail is using AI to auto-insert promo annotations—take control before weird images show up.(15:12) AI summaries are coming for your emails—start thinking SEO and alt text, now.(16:40) Don't blast at the top of the hour if you want your emails to actually land.(17:39) Accessibility issues are everywhere—don't let your emails be part of the 90% problem.(18:24) New AI laws mean you need to update privacy and rethink your risk, pronto.(19:16) BIMI and logo verification—don't be the email sender with no face in the inbox.Guy and Danielle invite you to check out the Email After Hours podcast and explore deliverability tools and guidance from Validity.=================================================Check out our 100% FREE + VIRTUAL EVENTS! ->Guru Conference - The World's Largest Virtual EMAIL MARKETING Conference - Nov 6-7!Register here: www.GuruConference.com=================================================Check out Jay's YOUTUBE Channel: https://www.youtube.com/@schwedelsonCheck out Jay's TIKTOK: https://www.tiktok.com/@schwedelsonCheck Out Jay's INSTAGRAM: https://www.instagram.com/jayschwedelson/=================================================AND don't miss out on this awesome FREE upcoming Quick Hit!Marigold: Should I Switch Email Platforms? 5 Truths & Myths!6/24 11am – 12pm ET.Register HERE: https://www.linkedin.com/events/7325947932031991808/comments/=================================================MASSIVE thank you to our Sponsor, Marigold!!Email chaos across campuses, branches, or chapters? Emma by Marigold lets HQ keep control while local teams send on-brand, on-time messages with ease.Podcast & GURU listeners: 50 % off your first 3 months with an annual plan (new customers, 10 k-contact minimum, terms apply).Claim your offer now at jayschwedelson.com/emma
J. B. Godfrey is a veteran missionary, pastor, and missions leader with decades of service around the globe. He and his wife Linda served for many years in North Africa and later helped mobilize missionaries across Asia and the Muslim world. Currently, he serves as the Vice President of BIMI's Far East and Southeast Asia Fields, encouraging and equipping the next generation of missionaries. A passionate speaker and storyteller, J. B. brings deep insight into cross-cultural missions, spiritual warfare, and the joys and costs of gospel work.
Missionary Letter - BIMI Regional Representative Emeritus
Missionary Letter - BIMI CONNECT - Amazon
Testimonies - BIMI CONNECT - Scotland
Laurens en Stefan gaan verder. Ook Jim sluit aan. Locatie: de gezelligste thuiswerkplek van Nederland, 't Bajeskwartier. En gezelligheid kent geen tijd - in iets meer dan 1,5 uur tijd smijten de heren de onderwerpen over tafel. De cross (Benidorm, uiteraard), het WK (nog maar een paar nachtjes slapen!), Campenaerts vs Van Baarle (huh?), de lente (want die komt eraan), het systeem Visma (werkt die beter voor buitenlanders dan voor de Nederlanders?). Maar ook: Sam, Wout, Koen, Bimi. Kers op de taart: Pascal Post. En nog veel, veel meer. En hoe zat het ook alweer met die bakfiets gate? Je hoort het allemaal in de Live Slow Ride Fast podcast.
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
Is AI the Wizard of Oz? Or is it more? Microsoft's long standing effective MFA login bypass. Is TPM 2.0 not required after all for Windows 11? Meet 14 North Korean IT workers who made $88 million from the West. Android updates its Bluetooth tracking with anti-tracking. The NPM package manager repository has had 540,000 malicious packages discovered hiding in plain sight. The AskWoody site remains alive, well, and terrific. My iPhone is linked to Windows and it's wonderful. Yay. How has email been finding logos before BIMI? If we use Him and Her for people, how about Hal for AI? Another very disturbing conversation with ChatGPT. What's going on with the new ChatGPT o1 model? It wants to escape? What?? Let's Encrypt plans to reduce its certificate lifetime from 90 to just 6 days. Why in the world? And all the best holiday wishes. See you in January Show Notes - https://www.grc.com/sn/SN-1005-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: joindeleteme.com/twit promo code TWIT 1password.com/securitynow bigid.com/securitynow canary.tools/twit - use code: TWIT
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. The FTC has set its sights on data brokers. Let's hope something comes of it. GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. • All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. • The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. • Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. • Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. • Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. • AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. • The FTC has set its sights on data brokers. Let's hope something comes of it. • GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) • Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. • Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. • All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. • The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. • Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. • Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. • Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. • AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. • The FTC has set its sights on data brokers. Let's hope something comes of it. • GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) • Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. • Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. • All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. • The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. • Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. • Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. • Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. • AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. • The FTC has set its sights on data brokers. Let's hope something comes of it. • GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) • Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. • Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. The FTC has set its sights on data brokers. Let's hope something comes of it. GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. • All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. • The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. • Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. • Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. • Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. • AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. • The FTC has set its sights on data brokers. Let's hope something comes of it. • GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) • Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. • Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. The FTC has set its sights on data brokers. Let's hope something comes of it. GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
This week, Steve and Leo discuss the recent 'Salt Typhoon' hack of U.S. telecom providers by China, TPM 2.0 requirement for Windows 11, Microsoft's newly hacked Windows activation system, Apple patenting AI facial and body recognition, and much more. Steve also shares an intriguing conversation he had with the ChatGPT 4o AI system while working on an update to GRC's DNS Benchmark tool. All telecom providers have been hacked and may still not be safe to use. So now the government is recommending that we use our own encrypted communications. The plan to obsolete all non-TPM 2.0 PCs remains well underway. Microsoft must be feeling the heat, so they're taking time to not apologize. Whoops. Microsoft's product activation system has been fully hacked. All Windows and Office products may now be easily activated without any licensing. Here come the AI patents. Apple patents AI recognizing people by what they're wearing after earlier seeing their faces and noting what they're wearing. Zoom wasn't encrypting their early video conferencing. They're still trying to get out from under the mess their lies created for them. AWS introduces physical data terminal locations where users can go to perform massive data transfers to and from the cloud. The FTC has set its sights on data brokers. Let's hope something comes of it. GRC's email finally gets BIMI. (Can you see the Ruby-G logo?) Lot's a terrific listener feedback about authenticator policy, a new and free point-to-point link service, Tor's "Snowflake", linking PCs and Smartphones, and even recharging spent SodaStream canisters. Then we look at a recent conversation Steve had with "ChatGPT 4o with canvas" and the new plan that resulted Show Notes - https://www.grc.com/sn/SN-1004-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: lookout.com canary.tools/twit - use code: TWIT bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
Did Chinese researchers really break RSA encryption? What did they do? What next-level terror extortion is being powered by the NPD breach data? The EU to hold software companies liable for software security? Microsoft lost weeks of security logs. How hard did the try to fix the problem? The Chinese drone company DJI has sued the DoJ over its ban on DJI's drones. The DoJ wishes to acquire "DeepFake" technology to create fake people. Microsoft has bots pretending to fall for phishing campaigns, then leading the bad guys to their honeypots. It's diabolical and brilliant. A bit of BIMI logo follow-up, then... A look at the operation of the FIDO Alliance's forthcoming Credential Exchange Protocol which promises to create passkey collection portability Show Notes - https://www.grc.com/sn/SN-997-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: threatlocker.com for Security Now flashpoint.io lookout.com bitwarden.com/twit
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
uBlock Origin to the rescue National Public Data files for bankruptcy Will the .IO top level domain be disappearing? Patch Tuesday Firefox under attack Miscellany Sci-Fi The Sequence uBlock Origin Eero Routers Pep Link Router BIMI (up Scotty) Show Notes - https://www.grc.com/sn/SN-996-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Sponsors: 1password.com/securitynow threatlocker.com for Security Now joindeleteme.com/twit promo code TWIT vanta.com/SECURITYNOW
In this episode of Email After Hours, we're officially demystifying the DMARC record. DMARC is critical for brands looking to protect their domains from spoofing and phishing attacks. Plus, it's now required by major mailbox providers like Gmail and Yahoo.
Ralph chats with Lauren Petrullo, the founder and CEO of Mongoose Media, a digital marketing agency that helps e-commerce and brick-and-mortar businesses grow their online presence and revenue. Lauren shares her top 13 tips for digital marketing success in 2024, covering topics such as email verification, BIMI records, conditional logic, meta events, QR codes, reel covers, Q5, and more. Lauren explains why these strategies are essential for optimizing your email deliverability, meta shop visibility, catalog health, and social media promotion. She also reveals some of the tools and resources she uses to implement these tactics and measure their results. Whether you're an e-commerce store owner, a marketing director, or a business owner, you'll find tons of valuable insights and actionable tips in this episode to take your digital marketing game to the next level in 2024.Chapters:00:00:00 - Welcoming Lauren Petrullo to PT(Kasim called in "sick")00:03:07 - Revealing Our Contest Winner00:06:58 - Enhancing Email Impact: Discover why email verification is crucial for your strategy00:10:48 - Unlocking Email's Potential: Understanding BIMI Certification and its benefits00:14:32 - Smart Email Strategies: Using Conditional Logic to personalize your campaigns00:21:25 - Mastering Marketing Timing: Strategies for an effective Q5 and promotional calendars00:24:54 - 2024 Marketing Roadmap: Crafting a powerful promotional calendar00:27:14 - E-commerce Evolution: Adapting to changes in Meta Shops and Commerce Manager00:27:42 - Catalog Optimization: Tips for enhancing your e-commerce product catalog00:31:12 - Boosting Online Stores: The synergy of email verifications and shop setup.00:34:32 - Social Media Mastery: Making the most of Instagram Reels with eye-catching covers00:39:59 - Competitive Edge Fun: A light-hearted anecdote on outsmarting competitors00:43:20 - Wrapping Up: Final thoughts and staying connectedLINKS AND RESOURCES:Tier 11 JobsPerpetual Traffic on YouTubeTiereleven.comSolutions 8 Perpetual Traffic SurveyPerpetual Traffic WebsiteFollow Perpetual Traffic on TwitterConnect with Kasim on Twitter and Connect with Ralph on LinkedInThanks so much for joining us this week. Want to subscribe to Perpetual Traffic? Have some feedback you'd like to share? Connect with us on iTunes and leave us a review!