Transparent

lukeo's documents Rss

TLS and SSLv3 vulnerabilities explained

Good overview of the recent TLS Renegotiation Attack
  • Pdf_16x16 17 pages
  • lukeo published this 5 days ago
  • 118 reads
  • 1 comment

Cryptree: A Folder Tree Structure for Cryptographic File Systems

We present Cryptree, a cryptographic tree structure which facilitates access control in file systems operating on untrusted storage. Cryptree leverages the file system’s folder hierarchy to achieve...
  • Pdf_16x16 10 pages
  • lukeo published this 5 days ago
  • 16 reads
  • 0 comments

Re-issuing certificates from the 2008 Debian OpenSSL Vulnerability

We report on the aftermath of the discovery of a severe vulnerability in the Debian Linux version of OpenSSL. Systems affected by the bug generated predictable random numbers, most importantly publ...
  • Pdf_16x16 13 pages
  • lukeo published this 11/26/2009
  • 26 reads
  • 1 comment

Anonymity at the Edge

A retelling of a not-so-minor scandal over the exposure of passwords in the edge nodes of the ToR anonymity network.
  • Word_16x16 6 pages
  • lukeo published this 11/19/2009
  • 45 reads
  • 0 comments

The Rise of Whitelisting

A short essay on the rise the idea of whitelisting to block detect and block malware.
  • Word_16x16 6 pages
  • lukeo published this 11/19/2009
  • 40 reads
  • 0 comments

Beyond Box Ticking - a new era for risk governance

Nov 2009 report from the Economist Intelligence Unit.
  • Pdf_16x16 36 pages
  • lukeo published this 11/18/2009
  • 56 reads
  • 0 comments

The Sub-time Crisis in Web 2.0

A short note on why we fear general information overload in web 2.0, however the system will live on.
  • Word_16x16 2 pages
  • lukeo published this 11/16/2009
  • 57 reads
  • 0 comments

Hellman's TMTO Attack

This is a short and concise presentation on time-memory trade-off (TMTO) attacks, devised by Martin Hellman, given as part of coursework for professor Mark Stamp, San Jose State University.
  • Pdf_16x16 29 pages
  • lukeo published this 11/09/2009
  • 39 reads
  • 0 comments

Outline of a book on Passwords

Here is an outline of a book I started to write in 2003 on passwords. At the time I had a few months away from work and I decided to return to some basics in security, and I started with passwords ...
  • Word_16x16 52 pages
  • lukeo published this 11/09/2009
  • 77 reads
  • 0 comments

Methods for Studying Coincidences

PERSl DlACONlS and FREDERICK MOSTELLER, This article illustrates basic statistical techniques for studying coincidences. These include data-gathering methods (informal anecdotes, case studies, obse...
  • Pdf_16x16 9 pages
  • lukeo published this 11/07/2009
  • 78 reads
  • 0 comments

A Hazard Model for Tornado occurrence in the US

A paper on Monte Carlo (MC) modeling of tornado occurrence in the US. The paper shows how to work through from data, to modeling via MC to produce results.
  • Pdf_16x16 8 pages
  • lukeo published this 11/06/2009
  • 121 reads
  • 0 comments

Data Security in Financial Services, FSA (UK) April 2008

This report describes how financial services firms in the UK are addressing the risk that their customer data may be lost or stolen and then used to commit fraud or other financial crime. It sets...
  • Pdf_16x16 104 pages
  • lukeo published this 11/05/2009
  • 143 reads
  • 0 comments

Hotel Network Security: A Study of the Computer Networks in U.S. Hotels

A September 2008 report from the Cornell Centre for Hospitality Research, highlighting the weaknesses of common hub-based networks in hotels.
  • Pdf_16x16 20 pages
  • lukeo published this 11/05/2009
  • 229 reads
  • 1 comment

GAO report on bandwidth risks for the financial sector from a Pandemic

Increased demand during a severe pandemic could exceed the capacities of Internet providers’ access networks for residential users and interfere with teleworkers in the securities market and other ...
  • Pdf_16x16 77 pages
  • lukeo published this 11/04/2009
  • 68 reads
  • 0 comments

Microsoft Security Intelligence Report Volume 7 - Key Findings

Latest security intelligence key findings report from Microsoft (first half 2009).
  • Pdf_16x16 19 pages
  • lukeo published this 11/03/2009
  • 92 reads
  • 0 comments

Quantum Computing and Quantum Cryptography

An Entrust 2005 whitepaper on the implications of quantum computing and cryptography.
  • Pdf_16x16 11 pages
  • lukeo published this 11/02/2009
  • 190 reads
  • 0 comments

Digital States At Risk - Modernizing Legacy Systems

In 2008, NASCIO (National Association of State Chief Information Officers of American states) asked state CIOs to participate in a Web-based survey regarding the status of “legacy systems” and mode...
  • Pdf_16x16 43 pages
  • lukeo published this 11/02/2009
  • 65 reads
  • 0 comments

GAO Report - Improved Mesurements required for FISMA Security Program

A report from the US Government Accounting Office (GAO) describing the (in)effectiveness of the FISMA Security program.
  • Pdf_16x16 49 pages
  • lukeo published this 11/02/2009
  • 67 reads
  • 0 comments

Facebook: Threats to Privacy

MIT 2005 term paper by Harvey Jones, Jose Hiram Soltren
  • Pdf_16x16 76 pages
  • lukeo published this 11/01/2009
  • 105 reads
  • 0 comments

The Role of Modeling and Simulation in Information Security

Paper from InfoSec Writers by Mohammad Heidari. From the abstract There is a spate of papers and tools on using Modeling and Simulation (M&S) for testing Denial of Service- (DoS), virus and worm...
  • Pdf_16x16 13 pages
  • lukeo published this 10/31/2009
  • 162 reads
  • 0 comments
  • Showing 1-20 of 75.
  • Pages: 1 2 3 4