<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>M32 Security &#187; attack</title> <atom:link href="http://m32consulting.com/tag/attack/feed/" rel="self" type="application/rss+xml" /><link>http://m32consulting.com</link> <description>Network Security Info, News, and Resources</description> <lastBuildDate>Sun, 22 Jan 2012 23:37:02 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <item><title>German Researchers Find &#8220;Massive&#8221; Flaws In Cloud Security</title><link>http://m32consulting.com/2011/10/german-researchers-find-massive-flaws-in-cloud-security/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=german-researchers-find-massive-flaws-in-cloud-security</link> <comments>http://m32consulting.com/2011/10/german-researchers-find-massive-flaws-in-cloud-security/#comments</comments> <pubDate>Wed, 26 Oct 2011 18:53:23 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Cloud]]></category> <category><![CDATA[Customer]]></category> <category><![CDATA[Exploits]]></category> <category><![CDATA[Firewalls]]></category> <category><![CDATA[Government]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[amazon]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[aws]]></category> <category><![CDATA[computing]]></category> <category><![CDATA[ec2]]></category> <category><![CDATA[EucalyptusEucalyptus (computing)]]></category> <category><![CDATA[exploit]]></category> <category><![CDATA[information security]]></category> <category><![CDATA[network]]></category> <category><![CDATA[s3]]></category> <category><![CDATA[soap]]></category> <category><![CDATA[tw]]></category> <category><![CDATA[XML]]></category> <category><![CDATA[XSS]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=221</guid> <description><![CDATA[NetworkWorld has a very interesting writeup about a report that six German Information Security researchers published outlining very massive and highly exploitable flaws in Cloud Computing services; specifically Amazon&#8217;s EC2 and S3 as well as Eucalyptus Cloud Computing Software. Old concepts like XSS and what is referred to as XML Signature Wrapping attacks on the SOAP interfaces [...]]]></description> <content:encoded><![CDATA[<div
class="zemanta-img" style="margin: 1em; display: block;"><div
class="wp-caption alignright" style="width: 266px"><a
href="http://commons.wikipedia.org/wiki/File:Cloud_computing_icon.svg" target="_blank"><img
class="zemanta-img-configured" title="Cloud computing icon" src="http://upload.wikimedia.org/wikipedia/commons/thumb/1/12/Cloud_computing_icon.svg/256px-Cloud_computing_icon.svg.png" alt="Cloud computing icon" width="256" height="179" /></a><p
class="wp-caption-text">Image via Wikipedia</p></div></div><p>NetworkWorld has a very interesting writeup about a report that six German Information Security researchers published outlining very massive and highly exploitable flaws in <a
class="zem_slink" title="Cloud computing" href="http://en.wikipedia.org/wiki/Cloud_computing" rel="wikipedia">Cloud Computing</a> services; specifically <a
class="zem_slink" title="Amazon EC2" href="http://aws.amazon.com/ec2/" rel="homepage">Amazon&#8217;s EC2</a> and S3 as well as Eucalyptus Cloud Computing Software. Old concepts like XSS and what is referred to as <a
class="zem_slink" title="XML Signature" href="http://en.wikipedia.org/wiki/XML_Signature" rel="wikipedia">XML Signature</a> Wrapping attacks on the <a
class="zem_slink" title="SOAP" href="http://en.wikipedia.org/wiki/SOAP" rel="wikipedia">SOAP</a> interfaces of the aforementioned cloud services. Very troubling and a large blow to the legitimacy of  security in the cloud.</p><p><a
title="All Your Clouds are Belong to us – Security Analysis of Cloud Management Interfaces" href="http://www.nds.rub.de/media/nds/veroeffentlichungen/2011/10/22/AmazonSignatureWrapping.pdf" target="_blank">The full PDF of the German researchers&#8217; findings can be found here.</a></p><p>&nbsp;</p><p><a
title="Researchers find &quot;massive&quot; security flaws in cloud architectures" href="http://www.networkworld.com/news/2011/102611-security-cloud-252406.html" target="_blank">NetworkWorld Article</a></p><h6 class="zemanta-related-title" style="font-size: 1em;">Related articles</h6><ul
class="zemanta-article-ul"><li
class="zemanta-article-ul-li"><a
href="http://www.pcworld.com/article/242598/researchers_demo_cloud_security_issue_with_amazon_aws_attack.html">Researchers Demo Cloud Security Issue With Amazon AWS Attack</a> (pcworld.com)</li><li
class="zemanta-article-ul-li"><a
href="http://r.zemanta.com/?u=http%3A//www.infoworld.com/d/cloud-computing/researchers-demo-cloud-security-issue-amazon-aws-hijacking-attack-177179&amp;a=59897468&amp;rid=9fea2dfa-23e7-4226-869e-44aec161f55a&amp;e=e607e310bd8532578036b34a2b4a2074">Researchers demo cloud security issue with Amazon AWS hijacking attack</a> (infoworld.com)</li><li
class="zemanta-article-ul-li"><a
href="http://www.physorg.com/news/2011-10-cloud-gaps.html">Cloud computing: Gaps in the &#8216;cloud&#8217;</a> (physorg.com)</li><li
class="zemanta-article-ul-li"><a
href="http://www.networkworld.com/news/2011/102611-researchers-demo-cloud-security-issue-252403.html?source=nww_rss" target="_blank">Researchers demo cloud security issue with Amazon AWS attack</a> (networkworld.com)</li></ul><div
class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img
class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=9fea2dfa-23e7-4226-869e-44aec161f55a" alt="" /></div>Tags: <a
href="http://m32consulting.com/tag/amazon/" title="amazon" rel="tag">amazon</a>, <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/aws/" title="aws" rel="tag">aws</a>, <a
href="http://m32consulting.com/tag/computing/" title="computing" rel="tag">computing</a>, <a
href="http://m32consulting.com/tag/ec2/" title="ec2" rel="tag">ec2</a>, <a
href="http://m32consulting.com/tag/eucalyptuseucalyptus-computing/" title="EucalyptusEucalyptus (computing)" rel="tag">EucalyptusEucalyptus (computing)</a>, <a
href="http://m32consulting.com/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a
href="http://m32consulting.com/tag/information-security/" title="information security" rel="tag">information security</a>, <a
href="http://m32consulting.com/tag/network/" title="network" rel="tag">network</a>, <a
href="http://m32consulting.com/tag/s3/" title="s3" rel="tag">s3</a>, <a
href="http://m32consulting.com/tag/security/" title="Security" rel="tag">Security</a>, <a
href="http://m32consulting.com/tag/soap/" title="soap" rel="tag">soap</a>, <a
href="http://m32consulting.com/tag/tw/" title="tw" rel="tag">tw</a>, <a
href="http://m32consulting.com/tag/xml/" title="XML" rel="tag">XML</a>, <a
href="http://m32consulting.com/tag/xss/" title="XSS" rel="tag">XSS</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2011/10/german-researchers-find-massive-flaws-in-cloud-security/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Virus targets US Predator and Reaper drones</title><link>http://m32consulting.com/2011/10/virus-targets-us-predator-and-reaper-drones/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=virus-targets-us-predator-and-reaper-drones</link> <comments>http://m32consulting.com/2011/10/virus-targets-us-predator-and-reaper-drones/#comments</comments> <pubDate>Fri, 07 Oct 2011 21:29:53 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Breaches]]></category> <category><![CDATA[Exploits]]></category> <category><![CDATA[Government]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[code]]></category> <category><![CDATA[computer virus]]></category> <category><![CDATA[cybersecurity]]></category> <category><![CDATA[drone]]></category> <category><![CDATA[keystroke]]></category> <category><![CDATA[malicious code]]></category> <category><![CDATA[malware]]></category> <category><![CDATA[MQ-9 ReaperMQ-9 Reaper]]></category> <category><![CDATA[nist]]></category> <category><![CDATA[predator]]></category> <category><![CDATA[reaper drones]]></category> <category><![CDATA[War on TerrorismWar on Terrorism]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=216</guid> <description><![CDATA[A computer virus has infected the cockpits of America&#8217;s Predator and Reaper drones, logging pilots&#8217; every keystroke as they remotely fly missions over Afghanistan and other war zones. The name of the virus is yet to be known, as details are still emerging about how the malicious code got into the systems in the first [...]]]></description> <content:encoded><![CDATA[<p>A computer virus has infected the cockpits of America&#8217;s Predator and Reaper drones, logging pilots&#8217; every keystroke as they remotely fly missions over Afghanistan and other war zones. The name of the virus is yet to be known, as details are still emerging about how the malicious code got into the systems in the first place. Could this be a belligerent enemy to US forces attacking their main weapon in use for remote regions? Ars Technica has the story after the jump.</p><p><a
href="http://arstechnica.com/business/news/2011/10/exclusive-computer-virus-hits-drone-fleet.ars">Computer virus hits US Predator and Reaper drone fleet</a>.</p>Tags: <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/breaches/" title="Breaches" rel="tag">Breaches</a>, <a
href="http://m32consulting.com/tag/code/" title="code" rel="tag">code</a>, <a
href="http://m32consulting.com/tag/computer-virus/" title="computer virus" rel="tag">computer virus</a>, <a
href="http://m32consulting.com/tag/cybersecurity/" title="cybersecurity" rel="tag">cybersecurity</a>, <a
href="http://m32consulting.com/tag/drone/" title="drone" rel="tag">drone</a>, <a
href="http://m32consulting.com/tag/keystroke/" title="keystroke" rel="tag">keystroke</a>, <a
href="http://m32consulting.com/tag/malicious-code/" title="malicious code" rel="tag">malicious code</a>, <a
href="http://m32consulting.com/tag/malware/" title="malware" rel="tag">malware</a>, <a
href="http://m32consulting.com/tag/mq-9-reapermq-9-reaper/" title="MQ-9 ReaperMQ-9 Reaper" rel="tag">MQ-9 ReaperMQ-9 Reaper</a>, <a
href="http://m32consulting.com/tag/nist/" title="nist" rel="tag">nist</a>, <a
href="http://m32consulting.com/tag/predator/" title="predator" rel="tag">predator</a>, <a
href="http://m32consulting.com/tag/reaper-drones/" title="reaper drones" rel="tag">reaper drones</a>, <a
href="http://m32consulting.com/tag/war-on-terrorismwar-on-terrorism/" title="War on TerrorismWar on Terrorism" rel="tag">War on TerrorismWar on Terrorism</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2011/10/virus-targets-us-predator-and-reaper-drones/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Critical Microsoft Vista/2008/Windows 7 Zero-day Remote BSOD Found</title><link>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found</link> <comments>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/#comments</comments> <pubDate>Wed, 09 Sep 2009 00:24:06 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Corporate]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[ampersand]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[attacker]]></category> <category><![CDATA[blue screen of death]]></category> <category><![CDATA[BSOD]]></category> <category><![CDATA[Laurent Gaffié]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft vista]]></category> <category><![CDATA[microsoft windows vista]]></category> <category><![CDATA[OOB]]></category> <category><![CDATA[process id]]></category> <category><![CDATA[proof of concept]]></category> <category><![CDATA[SMB]]></category> <category><![CDATA[throwback]]></category> <category><![CDATA[versions of windows vista]]></category> <category><![CDATA[vulnerability]]></category> <category><![CDATA[zero day]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=41</guid> <description><![CDATA[Remember back in the days of Windows 95 when someone could use the OOB attack to remotely BSOD a PC? Well now you can relive your youth with a classic throwback from Microsoft! Windows Vista, 2008, and 2007 of all variants all have a similar vulnerability that allows a remote attacker take your machine down [...]]]></description> <content:encoded><![CDATA[<p>Remember back in the days of Windows 95 when someone could use the OOB attack to remotely BSOD a PC? Well now you can relive your youth with a classic throwback from Microsoft! Windows Vista, 2008, and 2007 of all variants all have a similar vulnerability that allows a remote attacker take your machine down with a simple ampersand. Leave it up to Microsoft to do it all again more than a decade later.</p><p>The SMB 2.0 driver in x86 and x64 versions of Windows Vista, Server 2008, and Windows 7 are all one in the same. When sent the &#8220;&amp;&#8221; character in the &#8220;Process ID High&#8221; SMB header, the process pagefaults and brings us the beloved Blue Screen of Death we&#8217;ve all come to know and love.</p><p><a
href="http://g-laurent.blogspot.com/2009/09/windows-vista7-smb20-negotiate-protocol.html" target="_blank">Credit goes to Laurent Gaffié and you can find the Proof-of-Concept on his blog.</a></p>Tags: <a
href="http://m32consulting.com/tag/ampersand/" title="ampersand" rel="tag">ampersand</a>, <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/attacker/" title="attacker" rel="tag">attacker</a>, <a
href="http://m32consulting.com/tag/blue-screen-of-death/" title="blue screen of death" rel="tag">blue screen of death</a>, <a
href="http://m32consulting.com/tag/bsod/" title="BSOD" rel="tag">BSOD</a>, <a
href="http://m32consulting.com/tag/laurent-gaffie/" title="Laurent Gaffié" rel="tag">Laurent Gaffié</a>, <a
href="http://m32consulting.com/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a
href="http://m32consulting.com/tag/microsoft-vista/" title="microsoft vista" rel="tag">microsoft vista</a>, <a
href="http://m32consulting.com/tag/microsoft-windows-vista/" title="microsoft windows vista" rel="tag">microsoft windows vista</a>, <a
href="http://m32consulting.com/tag/oob/" title="OOB" rel="tag">OOB</a>, <a
href="http://m32consulting.com/tag/process-id/" title="process id" rel="tag">process id</a>, <a
href="http://m32consulting.com/tag/proof-of-concept/" title="proof of concept" rel="tag">proof of concept</a>, <a
href="http://m32consulting.com/tag/smb/" title="SMB" rel="tag">SMB</a>, <a
href="http://m32consulting.com/tag/throwback/" title="throwback" rel="tag">throwback</a>, <a
href="http://m32consulting.com/tag/versions-of-windows-vista/" title="versions of windows vista" rel="tag">versions of windows vista</a>, <a
href="http://m32consulting.com/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a>, <a
href="http://m32consulting.com/tag/zero-day/" title="zero day" rel="tag">zero day</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Microsoft DirectShow ActiveX Buffer Overflow exploit in the wild</title><link>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild</link> <comments>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/#comments</comments> <pubDate>Mon, 06 Jul 2009 17:50:48 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Software]]></category> <category><![CDATA[ActiveX]]></category> <category><![CDATA[activex buffer overflow]]></category> <category><![CDATA[Advisory]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[based buffer overflow]]></category> <category><![CDATA[boundary]]></category> <category><![CDATA[Buffer]]></category> <category><![CDATA[buffer overflow attack]]></category> <category><![CDATA[code]]></category> <category><![CDATA[DirectShow]]></category> <category><![CDATA[dll]]></category> <category><![CDATA[image content]]></category> <category><![CDATA[internet explorer]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft directshow]]></category> <category><![CDATA[msvidctl]]></category> <category><![CDATA[network security appliance]]></category> <category><![CDATA[Overflow]]></category> <category><![CDATA[secunia]]></category> <category><![CDATA[stack overflow]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=37</guid> <description><![CDATA[Be sure to check for patches and network security appliance definitions/signatures today, Microsoft has been reminded again of why people hate ActiveX; Secunia is reporting a nasty new DirectShow Buffer Overflow attack is in the wild. This one is very dangerous, as it exploits the built-in DirectShow control in Internet Explorer (msvidctl.dll) by using specially-crafted [...]]]></description> <content:encoded><![CDATA[<p>Be sure to check for patches and network security appliance definitions/signatures today, Microsoft has been reminded again of why people hate ActiveX; Secunia is reporting a nasty new DirectShow Buffer Overflow attack is in the wild. This one is very dangerous, as it exploits the built-in DirectShow control in Internet Explorer (msvidctl.dll) by using specially-crafted image content to create a boundary error and subsequently cause a stack-based buffer overflow allowing the attacker to execute arbitrary code on the compromised machine.</p><p>The worst part? It&#8217;s already being actively used by bad people. Although Secunia&#8217;s site currently shows Windows XP as the only OS vulnerable, I wouldn&#8217;t be surprised to see more versions of Windows tacked on in the near future.</p><p><a
title="Secunia Advisory 35683" href="http://secunia.com/advisories/35683/">More information can be found here.</a></p>Tags: <a
href="http://m32consulting.com/tag/activex/" title="ActiveX" rel="tag">ActiveX</a>, <a
href="http://m32consulting.com/tag/activex-buffer-overflow/" title="activex buffer overflow" rel="tag">activex buffer overflow</a>, <a
href="http://m32consulting.com/tag/advisory/" title="Advisory" rel="tag">Advisory</a>, <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/based-buffer-overflow/" title="based buffer overflow" rel="tag">based buffer overflow</a>, <a
href="http://m32consulting.com/tag/boundary/" title="boundary" rel="tag">boundary</a>, <a
href="http://m32consulting.com/tag/buffer/" title="Buffer" rel="tag">Buffer</a>, <a
href="http://m32consulting.com/tag/buffer-overflow-attack/" title="buffer overflow attack" rel="tag">buffer overflow attack</a>, <a
href="http://m32consulting.com/tag/code/" title="code" rel="tag">code</a>, <a
href="http://m32consulting.com/tag/directshow/" title="DirectShow" rel="tag">DirectShow</a>, <a
href="http://m32consulting.com/tag/dll/" title="dll" rel="tag">dll</a>, <a
href="http://m32consulting.com/tag/image-content/" title="image content" rel="tag">image content</a>, <a
href="http://m32consulting.com/tag/internet-explorer/" title="internet explorer" rel="tag">internet explorer</a>, <a
href="http://m32consulting.com/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a
href="http://m32consulting.com/tag/microsoft-directshow/" title="microsoft directshow" rel="tag">microsoft directshow</a>, <a
href="http://m32consulting.com/tag/msvidctl/" title="msvidctl" rel="tag">msvidctl</a>, <a
href="http://m32consulting.com/tag/network-security-appliance/" title="network security appliance" rel="tag">network security appliance</a>, <a
href="http://m32consulting.com/tag/overflow/" title="Overflow" rel="tag">Overflow</a>, <a
href="http://m32consulting.com/tag/secunia/" title="secunia" rel="tag">secunia</a>, <a
href="http://m32consulting.com/tag/stack-overflow/" title="stack overflow" rel="tag">stack overflow</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/07/microsoft-directshow-activex-buffer-overflow-exploit-in-the-wild/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>SHA-1 hash collision predicted within the year</title><link>http://m32consulting.com/2009/06/sha-1-hash-collision-predicted-within-the-year/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=sha-1-hash-collision-predicted-within-the-year</link> <comments>http://m32consulting.com/2009/06/sha-1-hash-collision-predicted-within-the-year/#comments</comments> <pubDate>Wed, 17 Jun 2009 03:02:41 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Cryptography]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[bruce schneier]]></category> <category><![CDATA[collisions]]></category> <category><![CDATA[computational]]></category> <category><![CDATA[cryptanalysis]]></category> <category><![CDATA[Cryptanalytic]]></category> <category><![CDATA[data security]]></category> <category><![CDATA[hash collision]]></category> <category><![CDATA[Hashing]]></category> <category><![CDATA[hashing algorithm]]></category> <category><![CDATA[md4]]></category> <category><![CDATA[md5]]></category> <category><![CDATA[nist]]></category> <category><![CDATA[real world]]></category> <category><![CDATA[sha]]></category> <category><![CDATA[sha algorithm]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=30</guid> <description><![CDATA[Bruce Schneier writes about a new cryptanalysis attack published recently brings the SHA-1 hashing algorithm increasingly closer to a realistic collision. Considering the SHA-1 algorithm is designed closeley to the principles of MD4 and MD5 hashing algorithms, it seems not a question of if, but a question of when. Bruce writes: A new attack can, [...]]]></description> <content:encoded><![CDATA[<p>Bruce Schneier writes about a new cryptanalysis attack published recently brings the SHA-1 hashing algorithm increasingly closer to a realistic <a
title="Hashing collision (Wikipedia)" href="http://en.wikipedia.org/wiki/Hash_collision" target="_blank">collision</a>. Considering the SHA-1 algorithm is designed closeley to the principles of MD4 and MD5 hashing algorithms, it seems not a question of if, but a question of when. Bruce writes:</p><blockquote><p><em>A <a
href="http://eprint.iacr.org/2009/259">new attack</a> can, at  least in theory, find collisions in 2<sup>52</sup> hash operations &#8212;  well within the realm of computational possibility.  Assuming the  cryptanalysis is correct, we should expect to see an actual SHA-1  collision within the year.</em></p></blockquote><p>This has little immediate real-world implications on data security since most have moved on to stronger or the SHA-2 family of algorithms which, for now, are safe. Nontheless, the NIST has already begun development on a &#8220;SHA-3&#8243; algorithm with publication to be expected in 2012.</p><p><a
title="Ever Better Cryptanalytic Results Against SHA-1" href="http://www.schneier.com/blog/archives/2009/06/ever_better_cry.html" target="_self">More on Bruce Schneier&#8217;s blog post.</a></p>Tags: <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/bruce-schneier/" title="bruce schneier" rel="tag">bruce schneier</a>, <a
href="http://m32consulting.com/tag/collisions/" title="collisions" rel="tag">collisions</a>, <a
href="http://m32consulting.com/tag/computational/" title="computational" rel="tag">computational</a>, <a
href="http://m32consulting.com/tag/cryptanalysis/" title="cryptanalysis" rel="tag">cryptanalysis</a>, <a
href="http://m32consulting.com/tag/cryptanalytic/" title="Cryptanalytic" rel="tag">Cryptanalytic</a>, <a
href="http://m32consulting.com/tag/data-security/" title="data security" rel="tag">data security</a>, <a
href="http://m32consulting.com/tag/hash-collision/" title="hash collision" rel="tag">hash collision</a>, <a
href="http://m32consulting.com/tag/hashing/" title="Hashing" rel="tag">Hashing</a>, <a
href="http://m32consulting.com/tag/hashing-algorithm/" title="hashing algorithm" rel="tag">hashing algorithm</a>, <a
href="http://m32consulting.com/tag/md4/" title="md4" rel="tag">md4</a>, <a
href="http://m32consulting.com/tag/md5/" title="md5" rel="tag">md5</a>, <a
href="http://m32consulting.com/tag/nist/" title="nist" rel="tag">nist</a>, <a
href="http://m32consulting.com/tag/real-world/" title="real world" rel="tag">real world</a>, <a
href="http://m32consulting.com/tag/sha/" title="sha" rel="tag">sha</a>, <a
href="http://m32consulting.com/tag/sha-algorithm/" title="sha algorithm" rel="tag">sha algorithm</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/06/sha-1-hash-collision-predicted-within-the-year/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>T-Mobile USA confirms massive data breach</title><link>http://m32consulting.com/2009/06/t-mobile-usa-confirms-massive-data-breach/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=t-mobile-usa-confirms-massive-data-breach</link> <comments>http://m32consulting.com/2009/06/t-mobile-usa-confirms-massive-data-breach/#comments</comments> <pubDate>Thu, 11 Jun 2009 02:02:57 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Breaches]]></category> <category><![CDATA[Corporate]]></category> <category><![CDATA[Customer]]></category> <category><![CDATA[Firewalls]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[black hat]]></category> <category><![CDATA[breach]]></category> <category><![CDATA[check point]]></category> <category><![CDATA[check point firewall]]></category> <category><![CDATA[checkpoint]]></category> <category><![CDATA[corporate document]]></category> <category><![CDATA[cybersecurity]]></category> <category><![CDATA[exploit]]></category> <category><![CDATA[GSM]]></category> <category><![CDATA[high visibility]]></category> <category><![CDATA[internal ip addresses]]></category> <category><![CDATA[massive data]]></category> <category><![CDATA[mobile hack]]></category> <category><![CDATA[network]]></category> <category><![CDATA[network security]]></category> <category><![CDATA[partial descriptions]]></category> <category><![CDATA[Pwnmobile]]></category> <category><![CDATA[t-mobile]]></category> <category><![CDATA[usa today]]></category> <category><![CDATA[user data]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=20</guid> <description><![CDATA[The network security guys at T-Mobile USA probably breached their underpants after some black hat or group of black hats named &#8220;Pwnmobile&#8221; posted on seclists.org a sizeable list of internal hostnames, OSes,  partial descriptions, internal IP addresses, and facilities relating to the back-end of T-Mobile&#8217;s customer management and services network. At first, T-Mobile tried to [...]]]></description> <content:encoded><![CDATA[<p>The network security guys at T-Mobile USA probably breached their underpants after some black hat or group of black hats named &#8220;Pwnmobile&#8221; posted on <a
title="insecure.org's mailing list" href="http://seclists.org/fulldisclosure/2009/Jun/62" target="_blank">seclists.org</a> a sizeable list of internal hostnames, OSes,  partial descriptions, internal IP addresses, and facilities relating to the back-end of T-Mobile&#8217;s customer management and services network.</p><p>At first, T-Mobile tried to say it was just a list pulled from a corporate document; but now the company is admitting that it was, in fact a major security breach <a
title="T-Mobile confirms company records taken" href="http://content.usatoday.com/communities/technologylive/post/2009/06/67913035/1" target="_blank">according to a USA Today Blog</a> and are not disclosing how much data was taken. Odds are, if whoever managed to get this far, a very sizeable amount of data was captured. The person who made the posting mentioned that they had tried to sell the information to competitors, but they were not taken seriously.</p><p>On a slightly related note, the posting related the T-Mobile hack with Check Point. Does this mean a perimeter Check Point firewall was either hacked or exploited to gain access to this network? Only further elaboration from Pwnmobile, T-Mobile, or an insider can say. There have been several recently published high-visibility Check Point exploits and perhaps they were used in the hack.</p>Tags: <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/black-hat/" title="black hat" rel="tag">black hat</a>, <a
href="http://m32consulting.com/tag/breach/" title="breach" rel="tag">breach</a>, <a
href="http://m32consulting.com/tag/check-point/" title="check point" rel="tag">check point</a>, <a
href="http://m32consulting.com/tag/check-point-firewall/" title="check point firewall" rel="tag">check point firewall</a>, <a
href="http://m32consulting.com/tag/checkpoint/" title="checkpoint" rel="tag">checkpoint</a>, <a
href="http://m32consulting.com/tag/corporate-document/" title="corporate document" rel="tag">corporate document</a>, <a
href="http://m32consulting.com/tag/cybersecurity/" title="cybersecurity" rel="tag">cybersecurity</a>, <a
href="http://m32consulting.com/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a
href="http://m32consulting.com/tag/gsm/" title="GSM" rel="tag">GSM</a>, <a
href="http://m32consulting.com/tag/high-visibility/" title="high visibility" rel="tag">high visibility</a>, <a
href="http://m32consulting.com/tag/internal-ip-addresses/" title="internal ip addresses" rel="tag">internal ip addresses</a>, <a
href="http://m32consulting.com/tag/massive-data/" title="massive data" rel="tag">massive data</a>, <a
href="http://m32consulting.com/tag/mobile-hack/" title="mobile hack" rel="tag">mobile hack</a>, <a
href="http://m32consulting.com/tag/network/" title="network" rel="tag">network</a>, <a
href="http://m32consulting.com/tag/network-security/" title="network security" rel="tag">network security</a>, <a
href="http://m32consulting.com/tag/partial-descriptions/" title="partial descriptions" rel="tag">partial descriptions</a>, <a
href="http://m32consulting.com/tag/pwnmobile/" title="Pwnmobile" rel="tag">Pwnmobile</a>, <a
href="http://m32consulting.com/tag/security/" title="Security" rel="tag">Security</a>, <a
href="http://m32consulting.com/tag/t-mobile/" title="t-mobile" rel="tag">t-mobile</a>, <a
href="http://m32consulting.com/tag/usa-today/" title="usa today" rel="tag">usa today</a>, <a
href="http://m32consulting.com/tag/user-data/" title="user data" rel="tag">user data</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/06/t-mobile-usa-confirms-massive-data-breach/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>BBC: US ramps up cybersecurity focus</title><link>http://m32consulting.com/2009/04/bbc-us-ramps-up-cybersecurity-focus/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=bbc-us-ramps-up-cybersecurity-focus</link> <comments>http://m32consulting.com/2009/04/bbc-us-ramps-up-cybersecurity-focus/#comments</comments> <pubDate>Thu, 23 Apr 2009 23:17:17 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[bbc]]></category> <category><![CDATA[bbc news]]></category> <category><![CDATA[breach]]></category> <category><![CDATA[Breaches]]></category> <category><![CDATA[cybersecurity]]></category> <category><![CDATA[espionage]]></category> <category><![CDATA[exploit]]></category> <category><![CDATA[focus]]></category> <category><![CDATA[government computers]]></category> <category><![CDATA[intrusion]]></category> <category><![CDATA[network]]></category> <category><![CDATA[news technology]]></category> <category><![CDATA[obama]]></category> <category><![CDATA[personal data]]></category> <category><![CDATA[ramps]]></category> <category><![CDATA[security infrastructure]]></category> <category><![CDATA[white house]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=8</guid> <description><![CDATA[Interesting article about how the US is planning on handling the aging security infrastructure in the US. The issue has become more pressing lately because of high-profile breaches that have garnered peoples&#8217; attention towards how safe not only the government is; but their personal data on government computers as well. More here: BBC NEWS &#124; [...]]]></description> <content:encoded><![CDATA[<p>Interesting article about how the US is planning on handling the aging security infrastructure in the US. The issue has become more pressing lately because of high-profile breaches that have garnered peoples&#8217; attention towards how safe not only the government is; but their personal data on government computers as well. More here:</p><p><a
href="http://news.bbc.co.uk/2/hi/technology/8011380.stm">BBC NEWS | Technology | US ramps up cybersecurity focus</a>.</p>Tags: <a
href="http://m32consulting.com/tag/attack/" title="attack" rel="tag">attack</a>, <a
href="http://m32consulting.com/tag/bbc/" title="bbc" rel="tag">bbc</a>, <a
href="http://m32consulting.com/tag/bbc-news/" title="bbc news" rel="tag">bbc news</a>, <a
href="http://m32consulting.com/tag/breach/" title="breach" rel="tag">breach</a>, <a
href="http://m32consulting.com/tag/breaches/" title="Breaches" rel="tag">Breaches</a>, <a
href="http://m32consulting.com/tag/cybersecurity/" title="cybersecurity" rel="tag">cybersecurity</a>, <a
href="http://m32consulting.com/tag/espionage/" title="espionage" rel="tag">espionage</a>, <a
href="http://m32consulting.com/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a
href="http://m32consulting.com/tag/focus/" title="focus" rel="tag">focus</a>, <a
href="http://m32consulting.com/tag/government-computers/" title="government computers" rel="tag">government computers</a>, <a
href="http://m32consulting.com/tag/intrusion/" title="intrusion" rel="tag">intrusion</a>, <a
href="http://m32consulting.com/tag/network/" title="network" rel="tag">network</a>, <a
href="http://m32consulting.com/tag/news-technology/" title="news technology" rel="tag">news technology</a>, <a
href="http://m32consulting.com/tag/obama/" title="obama" rel="tag">obama</a>, <a
href="http://m32consulting.com/tag/personal-data/" title="personal data" rel="tag">personal data</a>, <a
href="http://m32consulting.com/tag/ramps/" title="ramps" rel="tag">ramps</a>, <a
href="http://m32consulting.com/tag/security/" title="Security" rel="tag">Security</a>, <a
href="http://m32consulting.com/tag/security-infrastructure/" title="security infrastructure" rel="tag">security infrastructure</a>, <a
href="http://m32consulting.com/tag/white-house/" title="white house" rel="tag">white house</a><br
/> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/04/bbc-us-ramps-up-cybersecurity-focus/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching 22/66 queries in 0.426 seconds using disk: basic
Object Caching 4332/4520 objects using disk: basic

Served from: m32consulting.com @ 2012-02-10 11:53:37 -->
