-
INFINEON chip design flaw – not vulnerable in ECC, flaw only encountered on RSA
Bitcoin technology looks luck this round since INFINEON chip design flaw – not vulnerable in ECC (Elliptic Curve Cryptography), flaw only encountered on RSA. Vulnerability The flaw resides in the Infineon-developed RSA Library version v1.02.013. A design weakness has been found. A vulnerability in an implementation of RSA Key Generation could allow private encryption key disclosure.…
-
WPA2 vulnerability found. But online Banking system customer do not shock.
WPA2 vulnerability found. But online Banking system customer do not shock. Take it easy. The WPA2 wireless encryption scheme looks secure before specifics vulnerability occurred. Security expert found that hacker is able to relies on 3rd handshake doing injection which causes man-in-the-middle of attack. As a result your wireless network data traffic will be…
-
How will be effect to cyber world – a scandal from Microsoft
Reuters interviews with Microsoft former employees. A scandal given by former employees was that Microsoft responded quietly after detecting secret database hack in 2013. It looks that this is official commercial tactics. I have no surprise that hackers relies on known bug on vendor bug track database to formula new generation of virus. Believe it or not, we…
-
Potential risk of CVE-2017-15265
CVE-2017-15265 found on Linux causes privileges escalation. Cisco expert found that it the vulnerability is due to a use-after-free memory error in the ALSA .The ALSA Framework design for audio function. However Android and IoT devices are deployed the ALSA framework on demand. Since Cisco do not have sound on their router, network switch, IDS…
-
The art of cyberwar – Internet of things (IoT)
Preface: The art of war (孫子兵法) written by Sun Tzu. The Art of War is an ancient Chinese military treatise dating from the Spring and Autumn period in 5th century BC. The work, which is attributed to the ancient Chinese military strategist Sun Tzu, is composed of 13 chapters. Perhaps the art of cyberwar do…
-
Not a sophisticated technique, but it got his way to compromised ATM windows OS machine
Preface: Not a pulp fiction! Kaspersky Lab found that the latest generation of Malware focus in Bank ATM machine attack operate lightweight and simple. But we known that ATM machine was hardening the connectivity. May be you will be interested? In what way let the machine compromised? Introduction to Bank ATM malware types (malware found…
-
Do you think Kaspersky is a Scapegoat?
Preface U.S. Orders Federal Agencies to Remove Kaspersky Software Over Security Concerns! https://www.wsj.com/articles/u-s-orders-federal-agencies-to-remove-kaspersky-software-over-security-concerns-1505337484 Discussion topics – Do you think Kaspersky is a Scapegoat? Headlines news told that Eugene Kaspersky trained by former USSR KGB. For some potential reason predicted that his antivirus product design intend to collect the computer privacy thus doing the surveillance activities.…
-
I am a Microsoft OS. Just wonder why I was hacked even though I have protective system?
Preface: A simple question was asked by kernel? Why I was hacked even though I have comprehensive protective system? Background: The windows Operating System development team fully understand relies on market anti virus might not protecting their core OS significantly. Since the computer user not only using Microsoft word processing application. They are allow the…
-
Not similar October revolution. Who maintain bitcoins fundamental concept?
Preface Bitcoins concept: The system is peer-to-peer, and transactions take place between users directly, without an intermediary. About status of Bitcoins today Bitcoins change its original shape by financial investors. Perhaps there is no surprise that currencies are hard to avoid people re-engineering the structure. Sharing the and enjoys the benefits on arbitrage actions.…
-
Equifax data breach on 29th Jul 2017 tell the world Apache products more vulnerable than Microsoft Web server products
We believed that Apache web server more secure than Microsoft IIS Web server so far. However the most recent security incidents told the world the products of Apache not secure anymore! For instance, a critical vulnerability on Apache Struts encountered a serious vulnerability on Mar 2017 (CVE-2017-5638). As of today, there are total 4 vulnerabilities…