Rafal Rohozinski on Internet Surveillance and Monitoring

My former ONI colleague Rafal Rohozinski, now of Information Warfare Monitor, has a great interview where he discusses methodology and findings for both projects. Well worth a read!

Passwords and Post-Its

Bruce Schneier links to a paper from HotSec that argues strong passwords accomplish little; instead, stronger user IDs and limits on log-in attempts are better solutions. (Implicit in this argument is that dictionary or guessing attacks are lower-priority threats than phishing or keyloggers.) And John Kelly of the Washington Post bemoans the standard yet brain-dead [...]

Google, Encryption, and Security

The Washington Post covers a letter by security researchers and academics urging Google to adopt encryption (HTTPS) as the default for all of its services. (Disclosure: I signed the letter.) The letter makes the case convincingly:
Google uses industry-standard Hypertext Transfer Protocol Secure (HTTPS) encryption technology to protect customers’ login information. However, encryption is not enabled [...]

Talking Open Source in Cincinnati

I’ll be speaking on Monday at the Cincinnati Intellectual Property Law Association’s first annual seminar on the open source phenomenon (with a current focus on open source software that I hope will begin to abate in future iterations of the seminar). More important, I’ll be avidly listening: there are some dynamite speakers and topics [...]

Grading the New Administration’s Innovation Policy

During last year’s Presidential campaign, the Obama team earned accolades for its embrace of new technology to get its message out. During the transition, it extended tools developed during the campaign to allow citizen input on policy.  So, 100 days in, how is the new President doing on fostering technological innovation?
Not too well, according to [...]

Disclosure as Deterrent

Perhaps lost amidst some other minor news today, we learn of possibly one of the largest data breaches ever. According to the Security Fix blog on the Washington Post, a large payment processor called Heartland Payment Systems was infiltrated by a piece of malicious software:
Heartland does not know how long the malicious software was [...]

Like the Poor, Spam Is Always With Us

Network World has an interesting article called “CAN-SPAM: What Went Wrong?” This title is akin to: “Subprime Mortgages: A Bad Idea?” There are three depressing trends: spam remains a huge problem, both in IT costs and in volume; legal efforts have been mostly useless; and experts still disagree about solutions. There are two interesting ones: [...]

Skype, Filtering, and Privacy

[Update Oct. 3 5:45PM - Skype's president responds, and says Skype was unaware of TOM's monitoring. But this is why tech firms partner with domestic Chinese firms: to handle uncomfortable requests such as filtering and surveillance... (via Wired)]
The New York Times reports on some terrific research done by my former ONI colleague Nart Villeneuve – [...]

This Might Convince Me to Buy an iPhone

Lifehacker and CNET point out that IBM is releasing an “Ultralite” version of iNotes — a way of accessing your Lotus Domino (= Notes server) e-mail, contacts, and calendar from an Apple iPhone. This is cool, and a nice addition (competitor) to the current POP / IMAP options for iPhone. I’ve held off on buying [...]

Studying Cyberwar

The Washington Post has a great piece about the InfoWar Monitor project, including interviews with my former ONI colleagues Ron Deibert and Rafal Rohozinski. Cyberwar is a new, murky, and fascinating zone of interstate conflict. Most interestingly, it’s one where combat is outsourced: hackers and denial of service attacks can come from volunteers and on-line [...]

Protected by AkismetBlog with WordPress

Bad Behavior has blocked 10 access attempts in the last 7 days.