SEARCH RESULTS
 
Showing 1-10 of 13 records
 
Expand article

The Cyber Storm II Cyber Exercise

The Article has images
2008-04-03 12:29:03 by HASH0x8b6d0a8 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...adversary is abusing the most unprotected engagement point, thereby underminig the investments made into securing the most visible touch points. A couple of key points to consider in respect to the cyber exercise modelling weakness White hats pretending to be black hats simply doesn't work Frontal attack against critical infrastructure is...
 
 
 
 
 
Expand article

Covert channel vulnerabilities in anonymity systems

2007-12-10 10:39:42 by Steven J. Murdoch in Light Blue Touchpaper
 
...adversary. Rather, these attacks are feasible for an attacker with limited access to the network. The effectiveness of these techniques is demonstrated by experiments on a deployed anonymity network, Tor Finally, I introduce novel covert and side channels which exploit thermal effects. Changes in temperature can be remotely induced through...
 
 
 
 
 
Expand article

Combating Unrestricted Warfare

The Article has images
2007-12-15 09:08:23 by HASH0x8472308 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...adversarys social, economic, and political life. Unrestricted warfare employs surprise and deception and uses both civilian technology and military weapons to break the opponents will Moreover, the 2007 edition is covering in-depth such popular asymmetric threats posed by jihadists (pages 135/143) debunking the use of WMD as a priority, and...
 
 
 
 
 
Expand article

Fortify Documentary

2008-01-11 17:24:34 by RSnake in ha.ckers.org web application security lab
 
...adversary out there thats just as smart if not smarter than we are who wont be able to compromise that data. Then the camera flashes back to me as hes finishing his sentence. The irony being that Ive actually briefly worked with Howard before. This industry is just too small sometimes! So theres some funny editing work in there to point to me...
 
 
 
 
 
Expand article

Hacking Medical Devices

2008-03-12 10:39:59 by schneier in Schneier on Security
 
...adversary's computer could intercept wireless signals from the ICD and learn information including: the patient's name, the patient's medical history, the patient's date of birth, and so on Using our own equipment (an antenna, radio hardware, and a PC), we found that someone could also turn off or modify therapy settings stored on the ICD....
 
 
 
 
 
Expand article

The Security Mindset

2008-03-25 05:27:19 by schneier in Schneier on Security
 
...adversary or a criminal. You don't have to exploit the vulnerabilities you find, but if you don't see the world that way, you'll never notice most security problems I've often speculated about how much of this is innate, and how much is teachable. In general, I think it's a particular way of looking at the world, and that it's far easier to...
 
 
 
 
 
Expand article

The Security Mindset

2008-03-25 05:27:19 by schneier in Schneier on Security
 
...adversary or a criminal. You don't have to exploit the vulnerabilities you find, but if you don't see the world that way, you'll never notice most security problems I've often speculated about how much of this is innate, and how much is teachable. In general, I think it's a particular way of looking at the world, and that it's far easier to...
 
 
 
 
 
Expand article

Thin Client Security: Wise up!

The Article has images
2008-04-18 23:36:44 by Craig Balding in Cloud Security
...adversary would with an unpublished API, Wyse Thin OS is one of the most secure operating systems on the market With 128MB of Flash, insecure update methods and an unpublished API, Id say that makes you a target
 
 
 
 
 
Expand article

Fun Reading on Security - 1

2008-04-18 17:10:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...adversary or a criminal is to limit the paradigm of security to one general class of security roles: namely, the auditor.") Read it InformationWeek quotes a survey that mobile banking will grow 10x in the next 3 years. To me this sound like: finally, mobile malware Finally, Alan Shimmel unveils his " Shimel's theory of security company...
 
 
 
 
 
Expand article

Security Evolution

The Article has images
2008-05-19 17:42:16 by Gunnar Peterson in 1 Raindrop
...adversary is using Visio, but otherwise its mostly useless So we would want to see two things happen - developers start writing more high assurance code and second - infosec needs to evolve its security services to form fit to that which they are protecting. Hint - it ain't a Visio diagram The thing is - we are getting getter tools....