Application Security — News

White House e-mail crashes

The tech-savvy Obama White House is suffering the inconvenience and embarrassment of an e-mail crash that has lasted several hours Monday afternoon, according to published reports.

Tim Greene | 28 Jan | Read more

New attack against multiple encryption functions

Unless you're a dyed in the wool cryptographic geek you probably didn't know that there was a Crypto conference, or even a chain of worldwide crypto conferences that take place each year. Fortunately, for the most of us that aren't crypto geeks there are a handful of very highly skilled people who are; they can take the highly theoretical and complex mathematical proofs and arguments that make up most of modern cryptographic and cryptanalytic research and put it into plain language.

Carl Jongsma | 22 Aug | Read more

Kaminsky: Many ways to attack with DNS

There were 6 a.m. calls from Finnish certificate authorities and also some pretty harsh words from his peers in the security community, even an accidentally leaked Black Hat presentation, but after managing the response to one of the most highly publicized Internet flaws in recent memory, Dan Kaminsky said Wednesday that he'd do it all over again.

Robert McMillan | 07 Aug | Read more

Exploit reveals the darker side of automatic updates

A recent study of Web browser installations showed that far too few are up to date with the latest security patches. And browsers aren't alone; as my dear old mum can attest, it can be hard to keep up with OS and application patches when all you want to do is use your computer for work. It should come as no surprise that many PCs are vulnerable to security exploits that could otherwise be prevented.

Neil McAllister | 31 Jul | Read more

DNS bug tattler not the first to guess flaw details

The researcher whose speculation led to an early disclosure of information about a critical flaw in the Domain Name System (DNS), the Internet's traffic cop, wasn't the first to come close to the truth, said the security expert who found the bug and organized a massive patching effort.

Gregg Keizer | 24 Jul | Read more