Tag Archives: Security

They Never Learn

By now, most everyone has heard about the YouPorn Chat break in. John Graham-Cumming has the details. Due to very sloppy security YouPorn exposed the email addresses and passwords for many of their customers who signed up in 2008 and … Continue reading

Posted in General | Tagged | Leave a comment

Some RSA Public Keys Are Insecure

According to The New York Times, a team of European and American researchers have discovered that some (about 0.2%) RSA public keys are insecure. The insecurity is the result of using prime factors that aren’t cryptographically random. I’m still reading … Continue reading

Posted in General | Tagged | Leave a comment

TSA: So Incompetent It Surprises Even Me

We here at Irreal, like almost everyone else in the world, are not fans of the Transportation Security Administration. Their ability to combine heavy-handedness with incompetence exceeds even that of the typical DMV office. Still, the sheer assclownery of their … Continue reading

Posted in General | Tagged | Leave a comment

Password Cluelessness

Over at self.li, Peter Legierski has a horrifying post about password cluelessness. The tl;dr is that fon, described as the “world’s largest Wi-Fi Network” keeps its passwords as plain text. Legierski knows this because when he forgot his password and … Continue reading

Posted in General | Tagged | Leave a comment

And The Winner Is…

…password. SplashID has a list of 2011’s 25 most popular passwords as culled from the various exploits of LulzSec, Anonymous, and others. As expected, the runner up is 123456. Readers of this blog will find none of this surprising but … Continue reading

Posted in General | Tagged | Leave a comment

More SSH Tricks

Tycho Garen has a nice post with some SSH tricks to make your life easier. This serves as an excellent follow on to my previous post on the subject. There’s a bit of overlap but enough new material that it’s … Continue reading

Posted in General | Tagged | Leave a comment

Security and Unicode

I’ve written before about the wonders of Unicode but this post is an example of its dark side. Over at the Microsoft Malware Protection Center there is an interesting post about the use of Unicode by malware. It seems that … Continue reading

Posted in General | Tagged | Leave a comment

SSH Tricks

Smylers over at the Smylers Blog has an outstanding post on little known things you can do with SSH. Even after years of using SSH daily, there were still a couple of tricks new to me in the post. Smylers … Continue reading

Posted in General | Tagged | Leave a comment

How Passwords Get Stolen

I just stumbled across a nice post on How Attackers Steal Passwords by Joe Golton over at FilterJoe. It’s an interesting look at the common attacks on user passwords. There’s not a lot new or surprising in the post but … Continue reading

Posted in General | Tagged | Leave a comment

Diceware Implementation (Part 2)

Last time I presented an implementation of the Diceware method for generating a secure password. Today I’d like to finish up with a few details. First, the careful reader might wonder why I generated 4 random bytes with RAND_bytes instead … Continue reading

Posted in Programming | Tagged | 1 Comment