The Security Eunoia

Blogging about Security Auditing, IdM & Access Mgmt, Web App Security etc

Entries for the ‘Identity Management’ Category

New law forces the use of Anonymizers

Following the passage of the IPRED law in Sweden a few days ago, there’s been an increased demand for anonymizing services. The Pirate Bay has for instance started its own anonymizing service called IPREDator (you get the drift). Other anonymizers are also offering IPRED protection.

Leave a Comment

Cyber-snooping fears over government-issued OS

Chinese authorities are reportedly mandating that a Chinese developed OS called Red Flag Linux be installed in Internet cafes in a city in southern China. The action is meant to crack down on piracy, though some are not buying it, suspecting it is part of a scheme to snoop on and stop undesirable activities - [...]

Leave a Comment

Online payment site hijacked by crime gang

The Register has reported that an online payment service mycheckfree.com has lost control of at least two of its domains to a crime gang believed to be based in Eastern Europe.
Possible explanation?
It’s also unclear how the culprits managed to hijack the domains. While security experts say DNS poisoning wasn’t out of the question, the more [...]

Leave a Comment

Brain ‘fingerprinting’ - the future of airport security?

Keep your belt and shoes on, move swiftly through airport security carrying your hand luggage (carry-on cases) all in some 30 seconds!

That is the aim for a new so-called “paradigm shifting” security technology aimed at boosting airport security without the long waiting lines, CNN reports. But there is a price. You will be scanned for [...]

Leave a Comment

Authentication by BlueProximity

BlueProximity is an open source  tool which uses bluetooth technology to detect your (mobile phone’s) presence near your computer. It can automatically lock your computer once you move away and unlock it when you come within a predetermined distance from the computer.
It achieves this by connecting to your mobile phone via bluetooth using the Received [...]

Leave a Comment

Data Breach Disclosure - EU to Carry Carrot and Stick

In its publication titled Technology-Induced Challenges in Privacy and Data Protection in Europe, ENISA (European Network And Information Security Agency) made 13 recommendations aimed at taking personal data protection more seriously than it has been in the past. I’m particularly interested in recommendations 5 and 9.

Comments (2)

No Crunch in the Underground Economy - Symantec reports

Symantec has published a survey - Underground Economy - detailing the activities of cyber criminals who through astute business models have managed to rake in hundreds of millions of dollars in a year. The cost to victims of these activities easily runs into billions of dollars. What do they sell?

Leave a Comment

Authentication by body odour

Scientists have presented behavioural and chemical findings that suggest that an individual’s underlying body odour is so unique and strong that it can serve as a signature even when there has been of a major dietary change.
“The findings using this animal model support the proposition that body odors provide a consistent ‘odorprint’ analogous to a [...]

Leave a Comment

Get out of jail free card

This prison inmate manages to exploit a vulnerability in a legal search software to obtain the username and password to the prison management system in addition to stealing inmates personal records. I wonder what the prison management system could be used for! e.g. could it be used to set prisoner release dates, move people to [...]

Leave a Comment