<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Crypto on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/crypto/</link>
    <description>Recent content in Crypto on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 03 Jan 2017 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/crypto/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>TR17 Training: Crypto attacks and defenses</title>
      <link>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</link>
      <pubDate>Tue, 03 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</guid>
      <description>&lt;p&gt;This is a guest blog written by &lt;a href=&#34;https://www.troopers.de/events/speaker/557_jean-philippe_aumasson/&#34;&gt;Jean-Philippe Aumasson&lt;/a&gt; &amp;amp; &lt;a href=&#34;https://www.troopers.de/events/speaker/978_philipp__jovanovic/&#34;&gt;Philipp Jovanovic&lt;/a&gt; about their upcoming TROOPERS17 training: &lt;a href=&#34;https://www.troopers.de/events/troopers17/725_crypto_attacks_and_defenses/&#34;&gt;Crypto attacks and defenses. &lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The &lt;a href=&#34;https://www.troopers.de/events/troopers16/578_crypto_for_developers/&#34;&gt;1-day training from last TROOPERS&lt;/a&gt; has become a 2-day training, featuring even more real-world attacks and defenses as well as new hands-on sessions! We’ll teach you, step by step, how to spot and exploit crypto vulnerabilities, how to use the strongest forms of state-of-the-art cryptography to secure modern systems (like IoT or mobile applications), and bring you up to speed on the latest and greatest developments in the world of cryptography, such as TLS 1.3, blockchains, and post-quantum crypto.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Implementing an Obsolete VPN Protocol on Top of HTTP: Because Why Not?</title>
      <link>https://insinuator.net/2016/05/implementing-an-obsolete-vpn-protocol-on-top-of-http-because-why-not/</link>
      <pubDate>Tue, 31 May 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/05/implementing-an-obsolete-vpn-protocol-on-top-of-http-because-why-not/</guid>
      <description>&lt;p&gt;Recently I’ve started some research on MikroTik’s RouterOS, the operating system that ships with RouterBOARD devices. As I’m running such a device myself, one day I got curious about security vulnerabilities that have been reported on the operating system and the running services as it comes with tons of &lt;a href=&#34;http://wiki.mikrotik.com/wiki/Manual:RouterOS_features&#34;&gt;features&lt;/a&gt;. Searching for known vulnerabilities in RouterOS on Google doesn’t really yield a lot of recent security related stuff. So I thought, there is either a lack of (public) research or maybe it is super secure… 🙂&lt;/p&gt;</description>
    </item>
    <item>
      <title>WPAD Name Collision Vulnerability (TA16-144A)</title>
      <link>https://insinuator.net/2016/05/wpad-name-collision-vulnerability-ta16-144a/</link>
      <pubDate>Tue, 24 May 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/05/wpad-name-collision-vulnerability-ta16-144a/</guid>
      <description>&lt;p&gt;Yesterday the US-CERT released a &lt;a href=&#34;https://www.us-cert.gov/ncas/alerts/TA16-144A&#34;&gt;Technical Alert&lt;/a&gt; (TA16-144A) about the recently found WPAD Name Collision Vulnerability. We will give you a summary about the vulnerability as well as the basic mechanisms here.&lt;/p&gt;&#xA;&lt;h2 id=&#34;wpad&#34;&gt;WPAD&lt;/h2&gt;&#xA;&lt;p&gt;The Web Proxy Auto-Discovery Protocol is used to auto-configure the proxy for web browsers. So when joining the according network the browser can use DHCP and DNS methods to find a specific configuration file (typically named wpad.dat), which is loaded and applied to the browser’s settings. Therefore, there is no need to configure each browser in your environment individually/manually.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Discover the Unknown: Analyzing an IoT Device</title>
      <link>https://insinuator.net/2016/04/discover-the-unknown-analyzing-an-iot-device/</link>
      <pubDate>Mon, 11 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/discover-the-unknown-analyzing-an-iot-device/</guid>
      <description>&lt;p&gt;This blog post will give a brief overview about how a simple IoT device can be assessed. It will show a basic methodology, what tools can be used for different tasks and how to solve problems that may arise during analyses. It is aimed at readers that are interested in how such a device can be assessed, those with general interest in reverse engineering or the ones who just want to see how to technically approach an unknown device.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Microsoft Surface RT, a quick insight</title>
      <link>https://insinuator.net/2013/04/microsoft-surface-rt-a-quick-insight/</link>
      <pubDate>Wed, 24 Apr 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/04/microsoft-surface-rt-a-quick-insight/</guid>
      <description>&lt;p&gt;After being on the market for a few months now, Microsoft started quite a large advertising campaign in Germany for its new &lt;em&gt;Surface RT&lt;/em&gt; . We had a comprehensive look at the new tablet PC and here are a few thoughts and impressions:&lt;/p&gt;&#xA;&lt;p&gt;Running a slightly reduced ARM version of Windows 8, I heard somebody calling it “Windows 8 Home”, which in comparison to older versions hits the spot, Microsoft offers an easily usable interface. Software is reduced to market apps (the minimal run level on a plain Windows is 0, any, and 8, Microsoft, on Windows RT), so you can’t just install your favourite app, or can you?&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
