The new MD5/SSL exploit is NOT the end of civilization as we know it

Authentication, Business Continuity, Cybercrime, DNS Security, Encryption, Risk Management, Security Comments Off

MD5 insecure? Absolutely. SSL hacked? Sort of, but it’s not broken. CA negligence? You decide.


read more from this topic.....


Practical paranoia: trust, but verify

Authentication, Encryption, Risk Management, Security, Threats, patching Comments Off

In IT security, it pays to know the difference between trust and verifiable truth.


read more from this topic.....


Using cryptographic hashes with Ruby

Authentication, Encryption, Security Comments Off

The uses of cryptographic hash functions for security capabilities in software are many and varied. Ruby provides simple and easy options for generating and comparing cryptographic hashes.

read more from this topic.....


Use cryptographic hashes for validation

Authentication, Encryption, Security Comments Off

You can use cryptographic hash functions to provide a little more security when exchanging files.

read more from this topic.....


Perspectives: better than CAs?

Authentication, Encryption, Internet, Security Comments Off

Check out the Perspectives extension for Firefox to improve validation of HTTPS encrypted session certificates.

read more from this topic.....


Use complete session encryption with Gmail

Authentication, Encryption, Internet, Privacy, Security, vulnerability Comments Off

Find out how you can make Gmail encrypt your entire session when you check your email, and why you should do so right now.

read more from this topic.....


10 common security mistakes that should never be made

Authentication, Encryption, Privacy, Risk Management, Security Comments Off

Read about ten very basic, easily avoided security mistakes that should never be made — but are among the most common security mistakes people make.

read more from this topic.....


Keyczar: another open source security tool from Google

Authentication, Encryption, News, Security Comments Off

Google has done it again: just over a month since the open source release of RatProxy comes a cryptographic toolkit called Keyczar.

read more from this topic.....


How does bad password policy like this even happen?

Authentication, Identity Theft, Internet, Passwords, Security Comments Off

Just when you think you’ve seen the worst case of bad authentication policy you’ll ever see, you’ll stumble across something even more surprising and unfathomable.

read more from this topic.....


Five ways to show business value of M-F authentication

Authentication, Compliance, Passwords, Risk Management, Security, Security Solutions Comments Off

There’s more to selecting an enterprise second-factor authentication method than meets the retina scanner… As with any IT project, each dollar spent must produce business value. With M-F authentication, this translates to value beyond simply verifying an employee’s identity.

read more from this topic.....

« Previous Entries