The problem with anniversaries is that there's an almost infinite number of them every day...
Read moreBreaking the Zeppelin Ransomware Encryption Scheme
November 21 2022Brian Krebs writes about how the Zeppelin ransomware encryption scheme was broken:
The researchers said their break came when they understood that while Zeppelin used three different types of...
Read more
Failures in Twitter’s Two-Factor Authentication System
November 17 2022Twitter is having intermittent problems with its two-factor authentication system:
Not all users are having problems receiving SMS authentication codes, and those who rely on an authenticator app or...
Read more
A Digital Red Cross
November 14 2022The International Committee of the Red Cross wants some digital equivalent to the iconic red cross, to alert would-be hackers that they are accessing a medical network.
The emblem...
Read more
The Conviction of Uber’s Chief Security Officer
November 7 2022I have been meaning to write about Joe Sullivan, Uber’s former Chief Security Officer. He was convicted of crimes related to covering up a cyberattack against Uber. It’s a...
Read moreOctober Is Cybersecurity Awareness Month
October 5 2022For the past nineteen years, October has been Cybersecurity Awareness Month here in the US, and that event that has always been part advice and part ridicule. I tend...
Read moreNew Report on IoT Security
September 27 2022The Atlantic Council has published a report on securing the Internet of Things: “Security in the Billions: Toward a Multinational Strategy to Better Secure the IoT Ecosystem.” The...
Read moreSecurity and Cheap Complexity
August 26 2022I’ve been saying that complexity is the worst enemy of security for a long time now. (Here’s me in 1999.) And it’s been true for a long time.
In...
Read moreMudge Files Whistleblower Complaint against Twitter
August 24 2022Peiter Zatko, aka Mudge, has filed a whistleblower complaint with the SEC against Twitter, claiming that they violated an eleven-year-old FTC settlement by having lousy security. And he should...
Read moreUSB “Rubber Ducky” Attack Tool
August 18 2022The USB Rubber Ducky is getting better and better.
Already, previous versions of the Rubber Ducky could carry out attacks like creating a fake Windows pop-up box to...
Read more
Recent Comments