IEEE standardizes 801.11r fast Wi-Fi roaming (1)
share
digg
on
VoIP & Gadgets Blog (2)
1 week, 1 day
ago
permalink
The IEEE has completed 802.11r, a standard that lets Wi-Fi devices roam quickly between wireless access points (WAP) and which improves the performance of VoIP on enterprise LANs. Traditionally, 801.11 devices can roam from one access point to another, but it takes about 100ms to re-associate, and several seconds to re-establish authenticated connections using 802.1x. Not good for time-critical apps like VoIP.According to InfoWorld, "the new standard, 802.11r, known as Fast Basic Service Set Transition, ...
Five Online Encryption Tools to Protect Your Privacy (9)
share
digg
by
Tina (37)
on
MakeUseOf.com (407)
1 week, 2 days
ago
permalink
My recent article on cloud computing has sparked quite a discussion about how realistic the scenario is, and how no one is going to use cloud computing as a standard way of working because it puts their privacy and security at risk. The truth is, everybody with a computer and internet access is already performing cloud computing. When in need for information, do you go to the library or do you use search engines and ...
Crypto Pet Peeves: Hashing…Encoding…It’s All The Same, Right? (1)
share
digg
by
ptoomey3 (0)
on
Neohapsis Labs (0)
1 week, 3 days
ago
permalink
We all know cryptography is hard. Time and time again we in the security community give advice that goes something like, “Unless you have an unbelievably good reason for developing your own cryptography, don’t!”. Even if you think you have an unbelievably good reason I would still take pause and make sure there is no other alternative. Nearly every aspect of cryptography is painstakingly difficult: developing new crypto primitives is hard, correctly implementing them is ...
多种加密技术面临攻击 (1)
share
digg
by
matrix (175)
on
Solidot (179)
1 week, 4 days
ago
permalink
Adi Shamir,图灵奖获得者,同时也是RSA公钥加密技术中的“S”,最近在Crypto 2008大会上介绍了一篇论文,声称一种新的密码分析技术能攻击范围广泛的加密方法。Shamir的论文还没有公开。 新的攻击可能影响到哈希函数(如MD5,SHA-256),流密码(如RC4),分组密码(如DES,Triple-DES,AES)。这种新的密码分析方法称为“cube attacks”,基于代数密码分析学。暂时还不会对上述列出加密方法有效,但它提供了一种新形式的攻击方法。 密码专家Bruce Schneier在博客上称,这种攻击不适用于任何分组密码。
SQL Server 2008: Does my database contain Enterprise-only features? (1)
share
digg
by
Paul S. Randal (0)
on
In Recovery... (0)
1 week, 5 days
ago
permalink
Moving databases around is pretty common, as is moving databases between servers running different Editions of SQL Server, especially during a disaster recovery situation. You may not know this, but in SQL Server 2005, if you had partitioning anywhere in a database, you could only attach/restore that database using an Enterprise or Developer instance. I say 'you may not know this' because partitioning isn't really widely used (from what I can gather from talking to ...
Gmail recently rolled out a change to its ... [Privacy] (12)
share
digg
by
Chris Walters (66)
on
Consumerist (426)
2 weeks
ago
permalink
Gmail recently rolled out a change to its settings, where now you can permanently turn on SSL encryption. Do it now—your personal data will thank you for it. Besides, it's going to get a lot easier to hack Gmail sessions very soon, because some guy is planning on releasing a hacking tool to the public in order to force Google to implement better security. [monkey_bites]
-
Micah D said:
After I read "Little Brother" I've been security paranoid, now if I can just encrypt my IMAP access.
-
AfroWhitey said:
go to settings and click on "always use https" under browser connection
Force Gmail to use HTTPS (2)
share
digg
by
netsecpodcast@mckeay.net (Martin McKeay) (5)
on
Network Security Blog (2)
2 weeks, 1 day
ago
permalink
If the possibility of ending up on the Wall of Sheep at Defcon and Black Hat wasn’t enough for you, Mike Perry is about to release a tool that automatically steals the Gmail ID’s of any non-encrypted sessions it finds. If you’re surfing on the free, public wi-fi at your local coffee shop, anyone with a modicum of computer skills will be able to sniff your traffic with this tool and take over your account. ...
-
agent0x0 said:
Why doesn't Google just make this a permanent setting? The "low bandwidth" user excuse is really lame...
用Keyczar在Java和Python中轻松加密 (4)
share
digg
by
matrix (175)
on
Solidot (179)
2 weeks, 5 days
ago
permalink
Keyczar是Google安全团队开发的加密工具,Google宣布以 Apache 2许可证开源该项目。 Keyczar设计目的是更容易的加密数据,它的特性包括,提供了一个简单的API,轻松的更换和收回密钥,默认安全算法,模式、密钥长度,初始向量的自动生成和密码签名,目前只实现支持Java和Python语言(不久后会支持C++),暂时只提供Java的国际支持(不久后支持Python)。网站上的Java代码演示只使用到两行代码。
TrueCrypt 5.0 Released, Now Encrypts Entire Drive (2)
share
digg
by
CmdrTaco (153)
on
Slashdot (1398)
2 weeks, 5 days
ago
permalink
A funny little man writes "The popular open source privacy tool, TrueCrypt, has just received a major update. The most exciting new feature provides the ability to encrypt an entire drive, prompting the user for a password during boot up; this makes TrueCrypt the perfect tool for non-technical laptop users (the kind who are likely to lose all of that sensitive customer data). The Linux version receives a GUI and independence from the kernel internals, ...
How Important Is Protecting Streaming Media? (4)
share
digg
by
Soulskill (148)
on
Slashdot (1398)
2 weeks, 5 days
ago
permalink
spaj writes "In the ongoing battle with the MPAA and RIAA, there seems to be an ongoing argument about who is to blame. If you leave a $20 bill on the sidewalk, can you report it stolen when someone takes it? Of course you can, but will you be taken seriously by the authorities? When my car was broken into, I was told by the responding police officer that I might have prevented it by ...
Good Math, Bad Math : Introducing Cryptanalysis (5)
share
digg
on
Good Math, Bad Math (3)
2 weeks, 6 days
ago
permalink
To understand why serious encryption algorithms are so complex, and why it's so important to be careful with the critical secrets that make an encryption system work, it's useful to understand something about how people break encryption systems. The study of this is called cryptanalysis, and it's an amazingly fascinating field of applied mathematics. I'm going to be interspersing information about cryptanalysis with my cryptography posts. One thing to remember here is that we'll be ...
Google releases keyCzar (1)
share
digg
by
Caleb Kraft (18)
on
Hack a Day (141)
3 weeks, 1 day
ago
permalink
Filed under: newsGoogle has released keyCzar, a cryptographic toolkit that supports encryption and authentication for both symmetric and public-key algorithms. Cryptography is a common problem area for web programmers. keyCzar aims to help alleviate some of the issues by supplying safe defaults, tagging versions, and a simple interface. [via Zero Day]Read | Permalink | Email this | Linking Blogs | Comments
Keyczar (7)
share
digg
on
unofficial planet python (19)
3 weeks, 1 day
ago
permalink
Keyczar (via). New open source cryptography toolkit from Google, designed to get algorithm selection, key rotation and versioning right so you don’t have to. Java and Python versions are available; the Python version depends on PyCrypto.
让你最爱的曲子成为你的密码 (1)
share
digg
by
matrix (175)
on
Solidot (179)
3 weeks, 2 days
ago
permalink
我们有太多的密码要记住,其中许多都是不安全的。Carleton大学的安全研究人员提出新的建议,让用户选择用数字内容如mp3,照片或视频去代替密码。因为每个文件都有一个独一无二的字符串哈希值,它可以如密码一般使用。虽然方法称不上完美,但非常值得一试。但是如果选择一个流传很广的图片,其安全性可能比常用的密码好不到哪里去。关于此设想的论文已在最新的Usenix大会上成为安全方面的热门话题。一个以此设想为基础的Firefox扩展程序也已发布(使用方法为:选择文字、图像或链接,单击右键,选择Get ObPwd from.....)。
30+ Free Security, Encryption, Firewall and Antivirus Apps for Windows (4)
share
digg
by
Joel Falconer (94)
on
Stepcase Lifehack (397)
3 weeks, 3 days
ago
permalink
It’s hard to maintain a secure, virus-free Windows set-up. The Internet is like a minefield, where a poorly protected computer can become infected by all sorts of virii or allow malicious individuals to tinker with your hard drive’s contents, or worse, your operating system itself. Don’t waste any time getting your Windows computer secured. You don’t need to shell out hundreds of dollars to do this — and if you have a computer that’s not ...
30+ Free Security, Encryption, Firewall and Antivirus Apps for Windows - Stepcase Lifehack (19)
share
digg
by
Joel Falconer (94)
on
Stepcase Lifehack (397)
3 weeks, 3 days
ago
permalink
It’s hard to maintain a secure, virus-free Windows set-up. The Internet is like a minefield, where a poorly protected computer can become infected by all sorts of virii or allow malicious individuals to tinker with your hard drive’s contents, or worse, your operating system itself. Don’t waste any time getting your Windows computer secured. You don’t need to shell out hundreds of dollars to do this — and if you have a computer that’s not ...
30+ Free Security, Encryption, Firewall and Antivirus Apps for Windows (1)
share
digg
by
Joel Falconer (94)
on
Stepcase Lifehack (397)
3 weeks, 4 days
ago
permalink
It’s hard to maintain a secure, virus-free Windows set-up. The Internet is like a minefield, where a poorly protected computer can become infected by all sorts of virii or allow malicious individuals to tinker with your hard drive’s contents, or worse, your operating system itself. Don’t waste any time getting your Windows computer secured. You don’t need to shell out hundreds of dollars to do this — and if you have a computer that’s not ...
Rejoice! The end of “piracy” is at hand! (1)
share
digg
by
Chris Meadows (4)
on
TeleRead: Bring the E-Books Home (19)
3 weeks, 5 days
ago
permalink
Or so Atari founder Nolan Bushnell would have us believe. “There is a stealth encryption chip called a TPM that is going on the motherboards of most of the computers that are coming out now,” he said. “What that says is that in the games business we will be able to encrypt with an absolutely verifiable private key in the encryption world - which is uncrackable by people on the internet and by giving away ...
Simple Encryption: Introduction and Substitution Ciphers (2)
share
digg
on
Good Math, Bad Math (3)
3 weeks, 6 days
ago
permalink
The starting point talking about encryption is to understand what the point of it is; what it's supposed to do, what problems it's supposed to avoid. Encryption is fundamentally about communication: you've got two parties who want to communicate, but don't want anyone else to be able to listen in. They way that you do that is by sharing a secret. You use that secret to somehow modify the information that you're going to send, ...