Showing posts with label Craig Young. Show all posts
Showing posts with label Craig Young. Show all posts

Thursday, January 4, 2018

Spectre and Meltdown: What you need to know

If this first week is any indication, 2018 could mark a significant paradigm shift in trusted computing and open source hardware. Chip makers have been very effective in making enhancements to greatly improve application performance, but the revelation of Spectre and Meltdown makes it clear that more attention needs to be paid to hardware level […]… Read More

The post Spectre and Meltdown: What you need to know appeared first on The State of Security.

The post Spectre and Meltdown: What you need to know appeared first on Security Boulevard.



from Spectre and Meltdown: What you need to know

Thursday, May 18, 2017

Shining Light on The Shadow Brokers

The summer of 2016 was a tumultuous ride for those of us in the security community.  Less than a year ago, nobody had ever heard of The Shadow Brokers or Anna-Senpai but the same month (August 2016), these two as yet unidentified persons or groups made it clear that we are in the midst of […]… Read More

The post Shining Light on The Shadow Brokers appeared first on The State of Security.



from Shining Light on The Shadow Brokers

Saturday, February 25, 2017

The Internet’s Freshest Wounds: My Thoughts On Ticketbleed, Cloudbleed and HTTPS

In April 2014, the security community was shocked with the revelation that a poorly implemented TLS extension in OpenSSL could allow attackers to easily disclose private memory contents from an astonishing number of HTTPS sites. This bug, of course, is CVE-2014-0160 but it is better known by its brand name “Heartbleed.” This bug was cleverly […]… Read More

The post The Internet’s Freshest Wounds: My Thoughts On Ticketbleed, Cloudbleed and HTTPS appeared first on The State of Security.



from The Internet’s Freshest Wounds: My Thoughts On Ticketbleed, Cloudbleed and HTTPS