In context of GDPR and data minimisation requirements... is it even legal to have knowledge based authentication / security questions in use? Any service, except maybe a genealogy service, asking user their mother's maiden name should not exist.

#privacy #gdpr #knowledgebasedauthentication #securityquestions

Episode 245: How AI is remaking knowledge-based authentication

Host Paul Roberts talks with Matt Salisbury of Honeybadger HQ, which is using AI and machine learning to re-imagine knowledge-based authentication.

The Security Ledger with Paul F. Roberts