Category
Security
186 posts
- Hacking the Universe with Quantum Encraption
- Read My Lips: Let’s Kill 0Day
- The Cryptographically Provable Con Man
- Validating Satoshi (Or Not)
- “The Feds Have Let The Cyber World Burn. Let’s Put the Fires Out.”
- I Might Be Afraid Of This Ghost
- A Skeleton Key of Unknown Strength
- Defcon 23: Let’s End Clickjacking
- Safe Computing In An Unsafe World: Die Zeit Interview
- Talking with Stewart Baker
- You Set The Rules
- The Little MAC Attack
- Not Safe For Not Working On
- Never Let A Good Crisis Go To Waste
- Of Expectations And Rewards
- Bloody Cert Certified
- Be Still My Breaking Heart
- On Brinksmanship
- Actionable Intelligence: The Mouse That Squeaked
- DakaRand 1.0: Revisiting Clock Drift For Entropy Generation
- Black Ops 2012
- RDP and the Critical Server Attack Surface
- Open For Review: Web Sites That Accept Security Research
- White Hat Hacker Flowchart
- Primal Fear: Demuddling The Broken Moduli Bug
- Survey is good. Thesis is strange.
- How The WPS Bug Came To Be, And How Ugly It Actually Is
- Salt The Fries: Some Notes On Password Complexity
- Phidelius: Constructing Asymmetric Keypairs From Mere Passwords For Fun and PAKE
- Crypto Interrupted: Data On The WPS WiFi Break
- From 0day to 0data: TelnetD
- Exploring ReU: Rewriting URLs For Fun And XSRF/HTTPS
- These Are Not The Certs You’re Looking For
- Black Ops of TCP/IP 2011
- New York Times coming out against DNS filtering
- On The RSA SecurID Compromise
- LA Times Defends DNS
- DNS Filtering Threatens the Security and Stability of the Internet
- VUPEN vs. Google: They’re Both Right (Mostly)
- More Video On DanKam
- Fuzzmarking: Towards Hard Security Metrics For Software Quality?
- DanKam On TV!
- Spelunking the Triangle: Exploring Aaron Swartz’s Take On Zooko’s Triangle
- DNSSEC Interlude 3: Cache Wars
- DNSSEC Interlude 2: DJB@CCC
- DNSSEC Interlude 1: Curiosities of Benchmarking DNS over Alternate Transports
- The DNSSEC Diaries, Ch. 6: Just How Much Should We Put In DNS?
- Isomorphisms Rule Everything Around Me
- The DNSSEC Diaries, Ch. 5: Implicit Policies, Explicit Public Keys
- The DNSSEC Diaries, Ch. 4: A Schema For TXT
- The DNSSEC Diaries, Ch. 3: Contradictions
- The DNSSEC Diaries, Ch. 2: For Better or Worse, How The TXT Was Won
- And, we’re back
- The DNSSEC Diaries, Ch. 1: Names And Places
- Defense and Offense For HTML5
- Regarding DLL Hijacking
- Predictions for 2010
- A Marathon, Not A Sprint
- More Conficker Toolage
- Taming Conficker, The Easy Way
- Tools, Tools, Tools
- Infrastructure Attacks: A Growing Concern
- Cansec Slides, Now With More TCP NAT2NAT Goodness
- Staring Into The Abyss, A Bit Before Cansec
- Virtual Hoff
- Black Hat Federal slides
- Leetness Not Actually Required For Pwnage
- No School Like The Old School
- [cite required]
- This Was Not What I Had In Mind
- All Roads Lead To Rome
- Happy Birthday to the Renderman Paradox
- Please Do Not Destroy The DNS In Order To Save It
- Towards The Next DNS Fix
- The Emergence Of A Theme
- My (Not So) Little Pwnie
- Experimental Mail Server Analyzer Online
- On The Flip Side
- Best Thing Ever
- Summaries
- Pretty Pictures
- Why So Serious
- Black Hat 2008
- Relax on Apple
- To Answer A Couple Of Questions
- Further correction
- Shorter Details
- Details
- Webcast
- 13>0
- Here Comes The Cavalry
- Just a quick note
- Ow My Toe
- An Astonishing Collaboration
- Back Online.
- Adventures in SoCal (when it's not on fire)
- Coming Soon: Toronto for SecTor
- She’s A Star!
- Vienna
- XSRF^2
- More Epic Than That?
- CCC Camp: DefBurn.
- Nukular
- We Totally Need These Stinking Badges
- Packet Geeks Gone WWWild
- Black Ops and Grandma
- SBDA
- Hackers On A Plane
- Audit Kitty
- IT Is Not A Utility
- Imagery
- Code
- The Cluephone Dringeth
- Redux
- Old And Busted: MP3. The New Hotness: Cell Phone Records
- McNealy's Law
- On The Distinct Unlikeliness of Rolling Blackouts From Vista DNS
- Biometric Hashes Are Reversable. News At 11
- Learning from Sony: An External Perspective
- Progress?
- Down With OPP (Other People's Papers)
- Separation Anxiety
- They're Here…
- Welcome To Planet Sony
- Blogified
- Yay More MD5
- Gadgetry
- Katrina News
- Request
- 14 Year Old Self
- Another Year, Another Defcon
- This Is My Wakeup Call
- 10/6
- The Only Secure IM Client
- Idle Speculation Eventually Stops Being Idle
- Not-MD5 Imagery
- MD5 Imagery
- MD5 To Be Considered Harmful Someday
- It's Alive
- Emergency C Infusion
- Help Wanted
- Quick Summary: What's New?
- Release!
- Small Update
- Just because it's not a good idea…
- What's Miname?
- High Bandwidth Science Blinding
- Paketto 2.0 (Prerelease)
- Where's Dan?
- ZapMail Redux: A Response
- New Prebuild
- Paketto Keiretsu 1.10 Released!
- RFID Security
- Paketto Simplified (1.0)
- RFID Security
- This isn't how to crack SSH…
- Idea
- Paketto Prerelease
- Underwater Trailer Park
- Technical Difficulties
- Domo Arigato, Mr. Paketto
- Resequencing
- Most Depressing Packet Trace…Ever.
- Always Bet On Black (Hat)
- Feeling Used
- Deaf and Dumb: A Critique of Telephone Class Registration Systems
- Chemotherapy
- No Accounting For Taste ;-)
- Calm Before The Storm
- Connection
- Frustration
- There's Content In Them Thar Hills
- How Can I Miss You If You Won't Go Away?
- And So It Begins…
- Fission HOWTO
- RealFaces: An Intriguing Way To Authenticate
- Cryptography Doesn't Save Napster, and The War Over Parodies
- DoxPara Research Relaunched!
- Thoughts On Secure Deletion In 2001
- Password Rejected: A Crypto Perspective
- BugTRAQ– Re: Security hole in Win2K's FTP server
- Core Competencies: Why Open Source Is The Optimum Economic Paradigm for Software
- Mandatory Registration: Bad Business
- Insecurity By Design: The Unforseen Consequences of Login Scripts
- TCP Chorusing in the Windows 9x TCP/IP Stack
- Vectorcast: A Proposal Regarding the Efficient Distribution of Data On High Bandwidth Networks