Per Thorsheim
Founder & organizer of PasswordsCon. I know your next password. Linkedin.com/in/thorsheim for all the corporate details.
Sessions
STIR/SHAKEN is a set of protocols that adds PKI to phone calls. Effectively adding a digital signature that can be verified by a phone that supports STIR/SHAKEN, proving the calling number isn't spoofed. The US FCC made STIR/SHAKEN mandatory for carriers in the US starting July 1 2021. Canada joined in a little later. I didn't plan on speaking about this since STIR/SHAKEN is just wishful thinking for now where I live in Norway. However; after a little crowdsourcing work over 2-3 days here in Vegas to check the status of STIR/SHAKEN, it has become clear to me a talk is needed in order to enlighten people and call SHAME, SHAME, SHAME on US mobile carriers!
I don't trust password surveys. I don't trust the questions they ask, and I trust even less the results they provide. I want to fix that. I'm going to release a password survey as open & free to use, in order to better enable comparison across people, organizations, countries & societies.