The iDongle Makes iPhone Jailbreaking Child's Play [Hacking] (2)
share
digg
by
Brian Barrett (410)
on
Gizmodo (3999)
8 hours, 30 minutes
ago
permalink
It used to be that jailbreaking your iPhone was a long, involved process, but worth it for the freedom. We've reached a new age, though, where emancipating your phone is as simple as plugging in an iDongle. Liberty! More »
1024-bit RSA encryption cracked by carefully starving CPU of electricity (16)
share
digg
by
Sean Hollister (178)
on
Engadget (3078)
3 days, 2 hours
ago
permalink
Since 1977, RSA public-key encryption has protected privacy and verified authenticity when using computers, gadgets and web browsers around the globe, with only the most brutish of brute force efforts (and 1,500 years of processing time) felling its 768-bit variety earlier this year. Now, three eggheads (or Wolverines, as it were) at the University of Michigan claim they can break it simply by tweaking a device's power supply. By fluctuating the voltage to the CPU ...
1024-bit RSA encryption cracked by carefully starving CPU of electricity (84)
share
digg
by
Sean Hollister (178)
on
Engadget (3078)
3 days, 3 hours
ago
permalink
Since 1977, RSA public-key encryption has protected privacy and verified authenticity when using computers, gadgets and web browsers around the globe, with only the most brutish of brute force efforts (and 1,500 years of processing time) felling its 768-bit variety earlier this year. Now, three eggheads (or Wolverines, as it were) at the University of Michigan claim they can break it simply by tweaking a device's power supply. By fluctuating the voltage to the CPU ...
-
Luka said:
wwwhaaaat the ffuuuu....?
-
Metaphox said:
OMFG this is brilliant
-
Steven said:
Uh, crazy!
-
t said:
If you already have physical access to my machine, I've already been pwn3d.
-
Aaron said:
Wow. Very clever.
-
David said:
Sharing because it's an example of something I've been ranting about related to DRM - once again, no key or lock exists that humans won't find a way to pick, and they're exceedingly clever about it.
-
Monkey said:
Wow... Just wow... This is truly impressive.
-
chitchu said:
This is freaking awesome. And scary at the sametime.
-
Will said:
Ok, so the theory goes something like this: Someone with, possibly, physical access to a server with the private key, and is able to tamper with the power supply to cause the server to "flip single bits of the private key". With enough of these power fluctuation, a person can decipher the private key.Here's how countries can win all future cyber wars using the method. All they have to do is to create PSU's that's been modified to cause these power fluctuations to aid the attacker in deciphering the private key. Once the private key's been made clear text, all the target's OpenSSH connections will be opened for other exploits!Damn. I wonder if it is even possible to monitor these small power fluctuations to guard against this kind of attack?
-
Simon Lee said:
GO BLUE!
-
ant said:
This is ingenious; I wonder how they discovered that vulnerability. A truly old-school hack reminiscent of the old blue/red/brown box hacks.
-
yegle said:
这么bt的方法都能想出来…
-
alt said:
... "or ending human life as we know it." Potrei dire "calzante" :/
Security Expert: Flash Is the Root of Browser Insecurity (Oh, and IE8 Isn't So Bad!) [Security] (17)
share
digg
by
John Herrman (245)
on
Gizmodo (3999)
1 week, 3 days
ago
permalink
You're probably relatively confident in your various machines' integrity against hackers. Repeat Pwn2Own hacking competition victor Charlie Miller would like you to know that you're wrong—especially if you have Flash.In an interview with OneITSecurity, Miller picks off questions about hacking and security with just enough ease and nonchalance to make me queasy. Like, you know how Mac OS exploits are supposed to be tougher to root out than Windows exploits? Not quite! And they're both ...
-
Alex said:
"So the guy who consistently prevails Pwn2Own, a competition where hackers demonstrate exploits for sport, says that Flash, which is installed on about 98% of computers on the internet, unifies all browsers in insecurity, and that IE8, an Internet Explorer browser, in case you're having trouble unfolding that acronym, now ranks among the safest in its category."
-
Allan said:
Do we need more reasons that flash should die?