Public/Private Key encryption and security is one of the most powerful tools when it comes to building great cyber security – it is the security that the internet runs on. So when Microsoft reported a breach on a number of high profile Exchange Online mailboxes, no one expected that the …
Weak cryptographic keys in the wild – UPDATED
This post was originally published on 15 March 2022 Researcher, Hanno Böck, has found very weak cryptographic keys in use that have been generated by SafeZone Crypto Libraries, once owned by Inside Secure and now owned by Rambus. These keys are so weak that consumer grade hardware running old algorithms. …
Continue reading “Weak cryptographic keys in the wild – UPDATED”
Samsung smartphones with leaky security
There is an academic paper from Tel Aviv University examining Samsung smartphones and how they implement the cryptographic security. They found that some models had a design flaw that allowed for the extraction of the secret keys. Trust Dies in Darkness: Shedding Light on Samsung’s TrustZone Keymaster Design (iacr.org) Here …
Check your Let’s Encrypt certificate
SSL/TLS certificates are an essential part of the security of communications across the internet. Read how important they are here: Is that website secure? – #BeCyberSmart – Smart Thinking Solutions Website security either some people just don’t get it or they cannot be bothered! – Smart Thinking Solutions Website security …