Quantum Cryptography Cracked

December 30th, 2009 admin

Impressive: This presentation will show the first experimental implementation of an eavesdropper for quantum cryptosystem. Although quantum cryptography has been proven unconditionally secure, by exploiting physical imperfections (detector vulnerability) we have successfully built an intercept-resend attack and demonstrated eavesdropping under realistic conditions on an installed quantum key distribution line. The actual eavesdropping hardware we have built will be shown during…


Originally posted on Schneier

 
  Related Posts
Successful Attack Against a Quantum Cryptography System
Clever: Quantum cryptography is often touted as being perfectly secure. It is based on the principle that you cannot make measurements of a quantum system without disturbing it. So, in theory, it is impossible for an eavesdropper to intercept a quantum encryption key without disrupting it in a noticeable way, triggering alarm bells. Vadim Makarov... 
Location-Based Quantum Encryption
Location-based encryption — a system by which only a recipient in a specific location can decrypt the message — fails because location can be spoofed. Now a group of researchers has solved the problem in a quantum cryptography setting: The research group has recently shown that if one sends quantum bits — the quantum equivalent of... 
FIPS 140-2 Level 2 Certified USB Memory Stick Cracked
Kind of a dumb mistake: The USB drives in question encrypt the stored data via the practically uncrackable AES 256-bit hardware encryption system. Therefore, the main point of attack for accessing the plain text data stored on the drive is the password entry mechanism. When analysing the relevant Windows program, the SySS security experts found a... 
Hacker Wonderland: DefCon 18 in Photos
Hacker Wonderland: DefCon 18 in Photos
> LAS VEGAS — Roughly 10,000 computer hacking enthusiasts, poseurs, geeks, nerds and government agents gathered for DefCon last weekend. In its 18th year, the world’s largest hacker convention draws people from all walks of life to learn about the latest hacking techniques. Talks this year ranged from hardware hacker Chris Paget’s... 
Hacking ATMs
Hacking ATMs to spit out money, demonstrated at the Black Hat conference: The two systems he hacked on stage were made by Triton and Tranax. The Tranax hack was conducted using an authentication bypass vulnerability that Jack found in the system’s remote monitoring feature, which can be accessed over the Internet or dial-up, depending on how... 
The Power Law of Terrorism
Research result #1: “A Generalized Fission-Fusion Model for the Frequency of Severe Terrorist Attacks,” by Aaron Clauset and Frederik W. Wiegel. Plot the number of people killed in terrorists attacks around the world since 1968 against the frequency with which such attacks occur and you’ll get a power law distribution, that’s a fancy... 
Hack of Google, Adobe Conducted Through Zero-Day IE Flaw
Editor’s note: This story has been updated with a link to a Microsoft advisory about the new vulnerability as well as a Microsoft blog post discussing ways for users to reduce their risk of attack. The recent hack attack on Google, Adobe and other companies occurred through exploitation of a zero-day vulnerability that affects many versions... 
Random Numbers from Quantum Noise
Not that we need more ways to get random numbers, but the research is interesting….  Read More →
Attribution Using 20 Characteristics
Attribution Using 20 Characteristics
My post Attribution Is Not Just Malware Analysis raised some questions that I will try to address here. I’d like to cite Mike Cloppert as inspiration for some of this post. Attribution means identifying the threat, meaning the party perpetrating the attack. Attribution is not just malware analysis. There are multiple factors that can be... 
Hack of Adobe Conducted Via Zero-Day IE Flaw
The recent hack attack on Adobe occurred through exploitation of a zero-day vulnerability that affects all versions of Internet Explorer, according to a security researcher with a leading anti-virus firm. Microsoft learned about the vulnerability only Wednesday evening and is planning to release an announcement about the vulnerability later today,... 
  Related Tweets from Twitter
mindwarp (mindwarp)  : An excellent talk by Bruce Schneier on privacy and the individual, at EWI Cybersecurity Summit 2010: http://ur1.ca/1hgfa (8-minute YT video)..
Updated : 2010-09-04T01:33:33Z   |  Reply  |  View Tweet
vie_privee (Vie Privée Infos)  : Friday Squid Blogging: Squid Car: Squid car. http://bit.ly/dakvNG..
Updated : 2010-09-04T00:47:40Z   |  Reply  |  View Tweet
AlexBowman (Alex Bowman)  : Reading: UAE Man-in-the-Middle Attack Against SSL - Interesting: Who are these certificate authorities? At the begi... http://ow.ly/18Rhtg..
Updated : 2010-09-04T00:31:14Z   |  Reply  |  View Tweet
jfaughnan (John Faughnan)  : UAE Man-in-the-Middle Attack Against SSL: Interesting: Who are these certificate authorities? At the beginning of ... http://bit.ly/9hdHqP..
Updated : 2010-09-04T00:27:00Z   |  Reply  |  View Tweet
security (Security)  : Friday Squid Blogging: Squid Car: Squid car.... http://bit.ly/cScghn..
Updated : 2010-09-04T00:00:03Z   |  Reply  |  View Tweet
  Related News from Digg
No comments yet.
You must be logged in to post a comment.
TOP