Fotis

@fotisl

Opinions expressed are my own and do not represent my employer.

Vrijeme pridruživanja: prosinac 2008.

Tweetovi

Blokirali ste korisnika/cu @fotisl

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @fotisl

  1. proslijedio/la je Tweet
    17. sij
    Odgovor korisniku/ci

    macOS’s “malware resistance” was always due to the fact that nobody bothered to develop malware for it due to its unpopularity relative to Windows. The same holds true for Linux. On the whole, a Windows desktop has much more innate resilience to malware than macOS and Linux.

    Poništi
  2. 15. sij

    If the validator just checks if the public key is the same, then you can chain to that CA. So in effect, what you do is move the "difficult" problem is figuring out a d where Q=dG to a different curve where Q=d'G' but at that curve the problem is easier to solve.

    Prikaži ovu nit
    Poništi
  3. 15. sij

    My best guess regarding CVE-2020-0601 is that you can get the public key (Q) of a trusted CA, figure out a vulnerable curve that contains that point, get the private key (d) at that curve, and sign something. You explicitly specify all parameters and the signature is valid.

    Prikaži ovu nit
    Poništi
  4. proslijedio/la je Tweet
    13. sij

    Interested in Hardware Security Modules, Key Management, or simply are concerned with keeping secrets in a hardware secure? If so check out Jean-Baptiste Bédrune's talk from

    Prikaži ovu nit
    Poništi
  5. 12. stu 2019.
    Poništi
  6. proslijedio/la je Tweet

    DNS-over-HTTPS will be rolled out by default in Firefox for U.S. users starting at the end of September 2019. Firefox will default to using Cloudflare's 1.1.1.1 at first, but that may change if other resolvers adopt a comparably strong privacy policy.

    Poništi
  7. proslijedio/la je Tweet
    30. lip 2019.

    Debugging support for GHIDRA might be released this summer! Stay tuned!

    Poništi
  8. proslijedio/la je Tweet
    15. tra 2019.

    Me coding with ~5y experience: 1. write code Me coding with ~30y experience: 1. read docs for fopen() 2. write 1 line of code 3. check 17 different things in docs/internets about fopen 4. reverse fopen implementation because this one detail... 5. decide to use different function.

    Poništi
  9. proslijedio/la je Tweet

    Android: ptrace hole makes seccomp filter useless on devices with kernel <4.8

    Poništi
  10. proslijedio/la je Tweet
    Poništi
  11. proslijedio/la je Tweet
    13. sij 2019.

    SHA-NI (new instruction) benchmarks: Analogous to AESNI. H/t

    Poništi
  12. proslijedio/la je Tweet
    12. sij 2019.

    Stanford uploads 111 lectures by Donald Knuth. There go your next five years of spare time…

    Poništi
  13. proslijedio/la je Tweet
    6. sij 2019.

    Chess Steganography: encode data in the moves of a chess game (while avoiding bad moves)

    Poništi
  14. proslijedio/la je Tweet
    11. pro 2018.

    The insurance carrier Zurich, which had underwritten the multinational Mondelez’ cyber insurance policy, has denied M’s 100M claim for NotPetya, claiming it was a Russian act of war. Watch this case; it will help determine the regulations for attribution.

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet
    5. pro 2018.

    So excited! iOS 12.1.1 was released today with enforcement of Certificate Transparency for all publicly-trusted TLS server certs issued after October 15, 2018.

    Poništi
  16. 20. stu 2018.
    Prikaži ovu nit
    Poništi
  17. 20. stu 2018.

    Spend 40 mins of your life to watch this, it's worth it:

    Prikaži ovu nit
    Poništi
  18. proslijedio/la je Tweet
    13. stu 2018.

    Looks like Microsoft has a new Root Program for the Azure Front End. It seems it consists of DigiCert, GlobalSign, and some Chinese CAs I have not heard of and can not find. It also seems there is no contact for details on how to get into this "short-list"

    Prikaži ovu nit
    Poništi
  19. proslijedio/la je Tweet
    31. lis 2018.

    WiseKey's Quovadis division acquired by DigiCert. Spreadsheet of WebPKI Acquisitions has been updated

    Poništi
  20. proslijedio/la je Tweet
    15. lis 2018.

    Missing at the CA/Browser Forum in Shanghai.

    Prikaži ovu nit
    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·