Evil Maid goes after TrueCrypt!

Friday, October 16th, 2009

Let’s quickly recap the Evil Maid Attack. The scenario we consider is when somebody left an encrypted laptop e.g. in a hotel room. Let’s assume the laptop uses full disk encryption like e.g. this provided by TrueCrypt or PGP Whole Disk Encryption. Many people believe, including some well known security experts, ...

SSL Still Mostly Misunderstood

Saturday, October 10th, 2009

Most users ensure their Web sessions are using Secure Sockets Layer (SSL) before entering their credit card information, but less than half do so when typing their passwords onto a Web page, according to a new survey. Just what SSL does and doesn't do isn't clear to many users, and the ...

VirtualBox 3.0.8 Released

Thursday, October 8th, 2009

VirtualBox is a general-purpose full virtualizer for x86 hardware. Targeted at server, desktop and embedded use, it is now the only professional-quality virtualization solution that is also Open Source Software. Sun today released VirtualBox 3.0.8, a maintenance release of VirtualBox 3.0 which improves stability and performance. Download: http://www.virtualbox.org/wiki/Downloads ChangeLog: http://www.virtualbox.org/wiki/Changelog

Security researchers develop DoS attack filter

Tuesday, October 6th, 2009

Researchers have come up with host-based security software that blocks distributed denial-of-service attacks (DDoS) without swamping the memory and CPU of the host machines. The filtering, called identity-based privacy-protected access control (IPCAF), can also prevent session hijacking, dictionary attacks and man-in-the-middle attacks, say researchers at Auburn University in their paper, "Modeling ...

Microsoft Confirms Hotmail Phishing Attack

Monday, October 5th, 2009

Several thousand Hotmail usernames and passwords were exposed on over the weekend via a phishing attack, Microsoft confirmed late on Monday. Microsoft said it would block access to the accounts that were exposed and work with customers to reclaim access to them. "Over the weekend Microsoft learned that several thousand Windows Live ...