Denials, Denials, Denials, Believe Them Or Not, Something Is Rotten On The Supply-Chain Side…

Apple Inc. (Nasdaq: AAPL) has quite forcefully denied the (via Reuters, reportedly written by George Stathakopoulos – Apple’s Vice President for Information Security) existence of surreptitious-command-and-control-chip-insertions on system board… Continue reading Denials, Denials, Denials, Believe Them Or Not, Something Is Rotten On The Supply-Chain Side…

MDM Brute Forced

via Sean Gallagher, writing at Ars Technica, comes this particularly unfortunate news for Apple Inc. (Nasdaq: AAPL) MDM (Mobile Device Management) bits – especially considering there will be a flood of new devices into many orgs. On the plus side, the… Continue reading MDM Brute Forced

Hardware Security, Ramtin Amin’s Take

Friend of the Blog Trey Blalock of Firewall Consultants sent a link in yesterday which amgically trasnprted us to Ramtin Amin’s Web Blog yesterday (in actuality, a Hardware Security blog of considerable reknown)(gracias Trey!). Ramtin’s work is indic… Continue reading Hardware Security, Ramtin Amin’s Take

NetSpectre, The New Vector

Meanwhile, in Spectre (PDF) news, comes word from Ars Technica’s Peter Bright, of a newly discovered attack vector (PDF) (dubbed NetSpectre) using the pernicious speculative-execution in-built microscode from the Minds of Intel Corporation. Now – and … Continue reading NetSpectre, The New Vector

Positioning System Spoof Lash-up Can Reroute Robotic Automobiles Into Opposing Traffic

Bad mojo written up at Ars Technica and The Wall Street Journal, in the GPS realm. It’s high time for the manufacturers to step up remediation efforts targeting these pernicious position system flaws. Until the appropos remediations and mitigations a… Continue reading Positioning System Spoof Lash-up Can Reroute Robotic Automobiles Into Opposing Traffic

Circle City Con 5.0 2018, Jessica Hyde’s ‘IoT 4n6: The Growing Impact of the Internet of Things on Digital Forensics’

Permalink
The post Circle City Con 5.0 2018, Jessica Hyde’s ‘IoT 4n6: The Growing Impact of the Internet of Things on Digital Forensics’ appeared first on Security Boulevard.
Continue reading Circle City Con 5.0 2018, Jessica Hyde’s ‘IoT 4n6: The Growing Impact of the Internet of Things on Digital Forensics’

CyCon 2018, Thomas Dullien’s ‘Security, Moore’s Law, And The Anomaly Of Cheap Complexity’

Quite likely, the most imnportant meida discussing hardware security, computer science, and complexity escalation you may view today (if you are interested in that sort of thing, that is). Slides available.
Permalink
The post CyCon 2018, Thomas Dulli… Continue reading CyCon 2018, Thomas Dullien’s ‘Security, Moore’s Law, And The Anomaly Of Cheap Complexity’

Bad News Beemer, The Flaw Tales

Charlie Osborne writing for ZDNet’s Zero Day, regales us with the story of the proverbial Bad Beemer, and the discoveries of deep flaws in the German automaker’s usually highly regarded automobiles, by Tencent’s Keen Security Labs. Today’s Must Read.
Continue reading Bad News Beemer, The Flaw Tales