The NSA Is Breaking Most Encryption on the Internet

Thursday, September 5th, 2013

The new Snowden revelations are explosive. Basically, the NSA is able to decrypt most of the Internet. They're doing it primarily by cheating, not by mathematics. It's joint reporting between the Guardian, the New York Times, and ProPublica. I have been working with Glenn Greenwald on the Snowden documents, and I have seen a lot ...

Court rules that IP cloaking to access blocked sites violates law

Tuesday, August 20th, 2013

Disguising an IP address or using a proxy server to visit Web sites you've been banished from is a violation of the Computer Fraud and Abuse Act, a federal judge has ruled. U.S. District Court Judge Charles R. Breyer for the Northern District of California issued the ruling Friday in a ...

Wi-Fi routers: More security risks than ever

Saturday, August 3rd, 2013

More major brand-name Wi-Fi router vulnerabilities continue to be discovered, and continue to go unpatched, a security researcher has revealed at Defcon 21. Jake Holcomb, a security researcher at the Baltimore, Md.-based firm Independent Security Evaluators and the lead researcher into Wi-Fi router vulnerabilities, said that problem is worse than when ISE ...

New backdoor in HP server products

Friday, July 12th, 2013

Computer manufacturer HP has admitted that its StoreVirtual servers also contain an undocumented backdoor. The security vulnerability risks allowing attackers to gain unauthorised access to the storage systems. The backdoor provides users with direct access to the holy of holies, "LeftHand" (the operating system for the StoreVirtual server). HP has ...

HTTP Strict Transport Security becomes Internet standard

Friday, November 23rd, 2012

A Web security policy mechanism that promises to make HTTPS-enabled websites more resilient to various types of attacks has been approved and released as an Internet standard -- but despite support from some high-profile websites, adoption elsewhere is still low. HTTP Strict Transport Security (HSTS) allows websites to declare themselves accessible ...