OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Wes Peters (wessoftweyr.com)
Date: Fri Jan 19 2001 - 10:34:55 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Garrett Wollman wrote:
    >
    > <<On Wed, 17 Jan 2001 01:15:07 -0700, Wes Peters <wessoftweyr.com> said:
    >
    > > The iKey looks great, but I've been told it has a known exploit (a hard-
    > > coded keyphrase built into the hardware, or something like that.)
    >
    > However, all that gives an attacker is the chance to attempt to
    > brute-force the pass-phrase(s) your key(s) is/are protected under.

    Right, and the whole idea with something like the iKey is to only connect
    it to the machine when you need the key. I don't forsee someone mugging
    the FreeBSD SO in order to send out properly signed nefarious security
    patch.

    At least not this week.

    -- 
                "Where am I, and what am I doing in this handbasket?"
    

    Wes Peters Softweyr LLC wessoftweyr.com http://softweyr.com/

    To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message