General
Do Not Encrypt Passwords - Why, You Ask?
January 13, 2012
Encrypting passwords is bad. Try hashing them with a little bit of salt on top. Confused about the terminology - maybe i can clear your confusion with the use of a shoe, a box and a pen & paper...
Comments (2)
Hacker Halted: Moxie Marlinspike on SSL Authenticity
November 02, 2011
An in-depth examination of the current problems with authenticity in SSL, some of the recent high-profile SSL infrastructure attacks in detail, and some strategies to definitively fix the disintegrating trust relationships at the core of this fundamental protocol...
Comments (1)
Black Hat USA 2011: Jeff Hudson - CEO - Venafi
August 09, 2011
While encryption was once used almost exclusively to protect information using SSL certificates and symmetric and asymmetric keys to scramble data, now it is also used in authentication mechanisms to confirm the identity of a user or a device, and for digital signing to protect data...
Comments (0)
Most Liked
Latest Member Comments
CISO 2.0: Enterprise Umpire or Wide Receiver...
Michael Farnum on 05-22-2012
Hard Power, Soft Power, and the Power of Dig...
Krypt3ia on 05-22-2012
Protecting SCADA Systems with Air Gaps is a ...
Marc Quibell on 05-22-2012
Facebook "Like" Button = Privacy Violation +...
Didier Trarieux-Lumiere on 05-22-2012
Latest Posts
- Metasploitable: Gaining Root on a Vulnerable Linux System
- ICS-CERT: From the Trenches - A Tabletop Exercise
- Why Does Software Security Keep Falling off your Budget?
- Former DHS Director Sean Paul McGurk Joins ICS ISAC
- CISO 2.0: Enterprise Umpire or Wide Receiver?
- Dutch Military Intelligence Dives into Cyber
- Facebook "Like" Button = Privacy Violation + Security Risk
- Twitter Commits to Respecting Do Not Track with New Policy
- Hard Power, Soft Power, and the Power of Digital Espionage
- US vs. China: Is the Cyber Warfare Gap Increasing?
Latest Survey Results
2011 will be most likely be remembered for:
General




