43 subscribers
Переходьте в офлайн за допомогою програми Player FM !
Nate Lawson: Part 1
Manage episode 340700091 series 2956114
We bring on Nate Lawson of Root Labs to talk about a little bit of everything, starting with cryptography in the 1990s.
Transcript:
https://securitycryptographywhatever.com/2022/09/09/nate-lawson-part-1/
References
- IBM S/390: https://ieeexplore.ieee.org/document/5389176
- SSLv2 Spec: https://www-archive.mozilla.org/projects/security/pki/nss/ssl/draft02.html
- Xbox 360 HMAC: https://beta.ivc.no/wiki/index.php/Xbox_360_Timing_Attack
- Google Keyczar HMAC bug (reported by Nate): https://rdist.root.org/2009/05/28/timing-attack-in-google-keyczar-library/
Errata
- HMAC actually published in 1996, not 1997
- "That was one of the first, I think hardware applications of DPA was, was, um, satellite TV cards." Not true, they first were able to break Mondex, a MasterCard smart card
"Security Cryptography Whatever" is hosted by Deirdre Connolly (@durumcrustulum), Thomas Ptacek (@tqbf), and David Adrian (@davidcadrian)
53 епізодів
Manage episode 340700091 series 2956114
We bring on Nate Lawson of Root Labs to talk about a little bit of everything, starting with cryptography in the 1990s.
Transcript:
https://securitycryptographywhatever.com/2022/09/09/nate-lawson-part-1/
References
- IBM S/390: https://ieeexplore.ieee.org/document/5389176
- SSLv2 Spec: https://www-archive.mozilla.org/projects/security/pki/nss/ssl/draft02.html
- Xbox 360 HMAC: https://beta.ivc.no/wiki/index.php/Xbox_360_Timing_Attack
- Google Keyczar HMAC bug (reported by Nate): https://rdist.root.org/2009/05/28/timing-attack-in-google-keyczar-library/
Errata
- HMAC actually published in 1996, not 1997
- "That was one of the first, I think hardware applications of DPA was, was, um, satellite TV cards." Not true, they first were able to break Mondex, a MasterCard smart card
"Security Cryptography Whatever" is hosted by Deirdre Connolly (@durumcrustulum), Thomas Ptacek (@tqbf), and David Adrian (@davidcadrian)
53 епізодів
Усі епізоди
×
1 Cryptanalyzing LLMs with Nicholas Carlini 1:20:42

1 Dual_EC_DRBG with Justin Schuh and Matthew Green 1:07:45

1 A Little Bit of Rust Goes a Long Way with Android's Jeff Vander Stoep 1:13:55

1 Campaign Security with [REDACTED] 1:23:39

1 Telegram with Matthew Green 1:04:04

1 Zero Day Markets with Mark Dowd 1:25:49

1 STIR/SHAKEN with Paul Grubbs and Josh Brown 1:01:47
Ласкаво просимо до Player FM!
Player FM сканує Інтернет для отримання високоякісних подкастів, щоб ви могли насолоджуватися ними зараз. Це найкращий додаток для подкастів, який працює на Android, iPhone і веб-сторінці. Реєстрація для синхронізації підписок між пристроями.