Re: Kama Sutra Spoofs Digital Certificates

2006-01-26 Thread Lance James
Peter Gutmann wrote: >Anne & Lynn Wheeler <[EMAIL PROTECTED]> writes: > > > >>The Kama Sutra worm can fool WIndows into accepting a malicious ActiveX >>control >>by spoofing a digital signature, a security company said Tuesday. >> >> > >If you track down the original Fortinet advisory you'

thoughts on one time pads

2006-01-26 Thread Travis H.
In this article, Bruce Schneier argues against the practicality of a one-time pad: http://www.schneier.com/crypto-gram-0210.html#7 I take issue with some of the assumptions raised there. For example, you may have occasional physical meetings with a good friend, colleague, family member, or forme

a crypto wiki

2006-01-26 Thread Travis H.
http://www.cryptodox.com/Main_Page -- "The generation of random numbers is too important to be left to chance." -- Robert Coveyou -><- http://www.lightconsulting.com/~travis/ GPG fingerprint: 50A1 15C5 A9DE 23B9 ED98 C93E 38E9 204A 94C2 641B -

RE: a crypto wiki

2006-01-26 Thread Whyte, William
There's also a crypto portal in Wikipedia itself: http://en.wikipedia.org/wiki/Portal:Cryptography FWIW, I'd rather see energy focused on the Wikipedia version, which more people are likely to use. William > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Be

Re: thoughts on one time pads

2006-01-26 Thread Thierry Moreau
Travis H. wrote: In this article, Bruce Schneier argues against the practicality of a one-time pad: http://www.schneier.com/crypto-gram-0210.html#7 I take issue with some of the assumptions raised there. [...] Then a $1 CD-ROM would hold enough data for 7 years of communication! [...]

A glimpse of SIGINT 20 years ago...

2006-01-26 Thread Perry E. Metzger
This is a couple of weeks old, but it appears that, by accident, a lot of information on the targets and methods being used for US/Australian/NZ SIGINT about 20 years ago has come to light as the result of the release of a late New Zealand Prime Minister's papers. http://www.stuff.co.nz/stuff/pri

Re: thoughts on one time pads

2006-01-26 Thread Jack Lloyd
On Thu, Jan 26, 2006 at 05:30:36AM -0600, Travis H. wrote: [...] > Excuse me? This would in fact be a _perfect_ way to distribute key > material for _other_ cryptosystems, such as PGP, SSH, IPSec, openvpn, > gaim-encryption etc. etc. You see, he's right in that the key > distribution problem is

Re: thoughts on one time pads

2006-01-26 Thread Ralf Senderek
On Thu, 26 Jan 2006, Travis H. wrote: > All I've got to say is, I'm on this like stink on doo-doo. Being the > thorough, methodical, paranoid person I am, I will be grateful for any > pointers to prior work and thinking in this area. You may wish to look at: Ueli M . Maurer: Conditionally-Perf

Re: A glimpse of SIGINT 20 years ago...

2006-01-26 Thread Anne & Lynn Wheeler
Perry E. Metzger wrote: > This is a couple of weeks old, but it appears that, by accident, a lot > of information on the targets and methods being used for > US/Australian/NZ SIGINT about 20 years ago has come to light as the > result of the release of a late New Zealand Prime Minister's papers. >

Re: thoughts on one time pads

2006-01-26 Thread bear
On Thu, 26 Jan 2006, Travis H. wrote: > For example, you may have occasional physical meetings with a good > friend, colleague, family member, or former co-worker. Let's say > you see them once every few years, maybe at a conference or a > wedding or a funeral or some other occasion. At such t