Tag Archives: Security

Get Rid of the TSA Before They Kill Us

As regular readers know, we here at Irreal are not fans of the TSA. Apparently, Charles Kenny at BloombergBusinessweek isn’t a fan either. He’s posted an article entitled Airport Security Is Killing Us in which he makes the case that … Continue reading

Posted in General | Tagged | 1 Comment

DOS Amplification Attacks

Matthew Prince over at the CloudFlare Blog has a nice post on DNS Amplification DDos Attacks. He starts by explaining that DNS amplification attacks are descendants of the old Smurf Attacks. He goes on to show how they work and … Continue reading

Posted in General | Tagged | Leave a comment

Securing WordPress Sites

WordPress.tv has an interesting video by Chris Wiegman of bit51 entitled Securing WordPress is Easier Than Making Coffee. If you have a WordPress site this is worth an hour of your time. He begins by showing how a seemingly trivial … Continue reading

Posted in General | Tagged , | 1 Comment

Xah Lee on Crypto

Xah Lee has a nice digest (heh!) of the various cryptography algorithms used on the Web. It’s not a detailed technical picture—there are plenty of those available—but, rather, a short explanation of each of the major algorithms and how they … Continue reading

Posted in General | Tagged | Leave a comment

Storing Passwords Securely 2

A few days ago, I wrote about the Stormpath Video on how to secure passwords. Now Stormpath has published a blog post that covers the same material. This is good stuff and if you’re working on a site that handles … Continue reading

Posted in General | Tagged | Leave a comment

Storing Passwords Securely

I’ve written several posts about securely storing passwords (this one for instance). Here’s a video from Stormpath featuring their CTO Les Hazlewood that covers the same material for those who prefer a visual presentation. Hazlewood covers various levels of password … Continue reading

Posted in General | Tagged | Leave a comment

Computer Attacks in Real Time

BetaBeat has a fascinating article (via The Atlantic Wire) on a Honey Pot project that allows you to watch attacks as they happen. Every time there’s an attack, a red dot explodes on a world map at the source of … Continue reading

Posted in General | Tagged | Leave a comment

NIST Announces SHA-3

NIST just announced the winner of the SHA-3 competition: it’s Keccak. The Keccak hash uses a completely different strategy from the SHA-2 family, something that most analysts view as an advantage. It’s not clear how quickly Keccak will be integrated … Continue reading

Posted in General | Tagged | Leave a comment

An Analysis of PIN Numbers

Over at Data Genetics there’s a great analysis of PIN numbers. By aggregating data from several breaches Nick Berry gathered 3.4 million PIN numbers and performed extensive analysis on them. Every possible value was represented in the sample but they … Continue reading

Posted in General | Tagged | Leave a comment

Security Roundup

It’s been a busy week on the security front. Of course, that’s true of most weeks but here’s some interesting stories from the past few days: CloudCracker is offering a special this week on their MS-CHAPv2 service. They will break … Continue reading

Posted in General | Tagged | Leave a comment