<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://home.asbzone.com/utility/FeedStylesheets/atom.xsl" media="screen"?><feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en"><title type="html">BrainWave Technology Tidbits</title><subtitle type="html">&lt;B&gt;Technology Industry News &amp; Career Management information, brought to you by BrainWave Consulting Company.&lt;/B&gt;&lt;HR&gt;</subtitle><id>http://home.asbzone.com/BrainWave/atom.aspx</id><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/default.aspx" /><link rel="self" type="application/atom+xml" href="http://home.asbzone.com/BrainWave/atom.aspx" /><generator uri="http://communityserver.org" version="2.1.61129.2">Community Server</generator><updated>2009-06-24T07:45:06Z</updated><entry><title>Information Leakage from Keypads</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/07/02/information-leakage-from-keypads.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/07/02/information-leakage-from-keypads.aspx</id><published>2009-07-02T17:09:30Z</published><updated>2009-07-02T17:09:30Z</updated><content type="html">Can anyone guess the entry codes for these door locks? There are 10,000 possible four-digit codes, but you only have to try 24 on these keypads. The second is almost certainly guessable in one.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/07/02/information-leakage-from-keypads.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68531" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>More Security Countermeasures from the Natural World</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/07/02/more-security-countermeasures-from-the-natural-world.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/07/02/more-security-countermeasures-from-the-natural-world.aspx</id><published>2009-07-02T11:11:41Z</published><updated>2009-07-02T11:11:41Z</updated><content type="html">The plant caladium steudneriifolium pretends to be ill so mining moths won't eat it. She believes that the plant essentially fakes being ill, producing variegated leaves that mimic those that have already been damaged by mining moth larvae. That deters the moths from laying any further larvae on the leaves, as the insects assume the previous caterpillars have already eaten... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/07/02/more-security-countermeasures-from-the-natural-world.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68518" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>MD6 Withdrawn from SHA-3 Competition</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/07/01/md6-withdrawn-from-sha-3-competition.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/07/01/md6-withdrawn-from-sha-3-competition.aspx</id><published>2009-07-01T19:27:35Z</published><updated>2009-07-01T19:27:35Z</updated><content type="html">In other SHA-3 news, Ron Rivest seems to have withdrawn MD6 from the SHA-3 competition. From an e-mail to a NIST mailing list: We suggest that MD6 is not yet ready for the next SHA-3 round, and we also provide some suggestions for NIST as the contest moves forward. Basically, the issue is that in order for MD6 to be... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/07/01/md6-withdrawn-from-sha-3-competition.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68490" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>New Attack on AES</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/07/01/new-attack-on-aes.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/07/01/new-attack-on-aes.aspx</id><published>2009-07-01T16:49:18Z</published><updated>2009-07-01T16:49:18Z</updated><content type="html">There's a new cryptanalytic attack on AES that is better than brute force: Abstract. In this paper we present two related-key attacks on the full AES. For AES-256 we show the first key recovery attack that works for all the keys and has complexity 2119, while the recent attack by Biryukov-Khovratovich-Nikolic works for a weak key class and has higher... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/07/01/new-attack-on-aes.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68486" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Security, Group Size, and the Human Brain</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/07/01/security-group-size-and-the-human-brain.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/07/01/security-group-size-and-the-human-brain.aspx</id><published>2009-07-01T11:51:56Z</published><updated>2009-07-01T11:51:56Z</updated><content type="html">If the size of your company grows past 150 people, it's time to get name badges. It's not that larger groups are somehow less secure, it's just that 150 is the cognitive limit to the number of people a human brain can maintain a coherent social relationship with. Primatologist Robin Dunbar derived this number by comparing neocortex -- the "thinking"... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/07/01/security-group-size-and-the-human-brain.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68476" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Cryptography Spam</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/30/cryptography-spam.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/30/cryptography-spam.aspx</id><published>2009-06-30T18:36:42Z</published><updated>2009-06-30T18:36:42Z</updated><content type="html">I think this is a first. Information security, and protection of your e-money. Electronic payments and calculations, on means of a network the Internet or by means of bank credit cards, continue to win the world market. Electronic payments, it quickly, conveniently, but is not safely. Now there is a real war, between users and hackers. Your credit card can... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/30/cryptography-spam.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68439" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Growth of the CSE</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/30/growth-of-the-cse.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/30/growth-of-the-cse.aspx</id><published>2009-06-30T11:32:53Z</published><updated>2009-06-30T11:32:53Z</updated><content type="html">The Communication Security Establishment (CSE, basically Canada's NSA) is growing so fast they're running out of room and building new office buildings.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/30/growth-of-the-cse.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68422" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Anti-Stab Knife</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/29/anti-stab-knife.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/29/anti-stab-knife.aspx</id><published>2009-06-29T19:18:22Z</published><updated>2009-06-29T19:18:22Z</updated><content type="html">I've already written about the risks of pointy knives. This no-stabbing knife is the solution, and seems not to be a joke.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/29/anti-stab-knife.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68398" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Protecting Against the Snatched Laptop Data Theft</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/29/protecting-against-the-snatched-laptop-data-theft.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/29/protecting-against-the-snatched-laptop-data-theft.aspx</id><published>2009-06-29T11:51:02Z</published><updated>2009-06-29T11:51:02Z</updated><content type="html">Almost two years ago, I wrote about my strategy for encrypting my laptop. One of the things I said was: There are still two scenarios you aren't secure against, though. You're not secure against someone snatching your laptop out of your hands as you're typing away at the local coffee shop. And you're not secure against the authorities telling you... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/29/protecting-against-the-snatched-laptop-data-theft.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68385" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Friday Squid Blogging: 8 Gig USB Squid Flash Drive</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/26/friday-squid-blogging-8-gig-usb-squid-flash-drive.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/26/friday-squid-blogging-8-gig-usb-squid-flash-drive.aspx</id><published>2009-06-26T21:52:39Z</published><updated>2009-06-26T21:52:39Z</updated><content type="html">Cute.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/26/friday-squid-blogging-8-gig-usb-squid-flash-drive.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68284" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Fake Receipts</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/26/fake-receipts.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/26/fake-receipts.aspx</id><published>2009-06-26T18:16:12Z</published><updated>2009-06-26T18:16:12Z</updated><content type="html">For all of you who want to scam your company's expense reimbursement system. I've heard of sites where you give them a range of dates and a city, and they give you a full set of receipts for a trip to that city: airfare, hotel, meals, everything -- but I can't find a website.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/26/fake-receipts.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68280" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>The Problem with Password Masking</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/26/the-problem-with-password-masking.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/26/the-problem-with-password-masking.aspx</id><published>2009-06-26T11:17:52Z</published><updated>2009-06-26T11:17:52Z</updated><content type="html">I agree with this: It's time to show most passwords in clear text as users type them. Providing feedback and visualizing the system's status have always been among the most basic usability principles. Showing undifferentiated bullets while users enter complex codes definitely fails to comply. Most websites (and many other applications) mask passwords as users type them, and thereby theoretically... Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/26/the-problem-with-password-masking.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68268" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Clear Shuts Down Operation</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/25/clear-shuts-down-operation.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/25/clear-shuts-down-operation.aspx</id><published>2009-06-25T17:36:40Z</published><updated>2009-06-25T17:36:40Z</updated><content type="html">Clear, the company that sped people through airport security, has ceased operations. My first question: what happened to all that personal information it collected on its members? An answer appeared on its website: Applicant and Member data is currently secured in accordance with the Transportation Security Administration's Security, Privacy and Compliance Standards. Verified Identity Pass, Inc. will Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/25/clear-shuts-down-operation.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68240" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Authenticating Paperwork</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/25/authenticating-paperwork.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/25/authenticating-paperwork.aspx</id><published>2009-06-25T11:11:32Z</published><updated>2009-06-25T11:11:32Z</updated><content type="html">It's a sad, horrific story. Homeowner returns to find his house demolished. The demolition company was hired legitimately but there was a mistake and it demolished the wrong house. The demolition company relied on GPS co-ordinates, but requiring street addresses isn't a solution. A typo in the address is just as likely, and it would have demolished the house just... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/25/authenticating-paperwork.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68223" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry><entry><title>Workshop on Economics of Information Security</title><link rel="alternate" type="text/html" href="http://home.asbzone.com/BrainWave/archive/2009/06/24/workshop-on-economics-of-information-security.aspx" /><id>http://home.asbzone.com/BrainWave/archive/2009/06/24/workshop-on-economics-of-information-security.aspx</id><published>2009-06-24T11:45:06Z</published><updated>2009-06-24T11:45:06Z</updated><content type="html">I'm at the 8th Workshop on Economics and Information Security at University College London (field trip to see Jeremy Bentham). Ross Anderson liveblogged the event. I wrote about WEIS 2006 back in 2006.... Share Post: Read More......(&lt;a href="http://home.asbzone.com/BrainWave/archive/2009/06/24/workshop-on-economics-of-information-security.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://home.asbzone.com/aggbug.aspx?PostID=68188" width="1" height="1"&gt;</content><author><name>Anonymous</name><uri>http://home.asbzone.com/members/Anonymous.aspx</uri></author></entry></feed>