lonerunners.net | www.lonerunners.net www.lonerunners.net lab.lonerunners.net lab.lonerunners.net

Content separation: lab.lonerunners.net

(photo credits: Cyb3rbl@ck)
Per rendere più ordinato e più facilmente leggibile questo blog ho deciso di separare tutti i contenuti riguardanti la sicurezza informatica e la ricerca in un’altra sezione, precisamente un dominio chiamato lab.lonerunners.net.
Le notizie più importanti saranno comunque commentate qui in italiano.
Tutti post in inglese e quello che io chiamo pillole di sicurezza informatica [...]

What’s new in the Flash 10 security

The new version of Adobe Flash (actually 10 beta) has a variety of features and enhancements aimed to increase the security.
You can read a detailed article of Trevor McCaulery here: http://www.adobe.com/devnet/flashplayer/articles/fplayer10_security_changes.html
It seems that the Adobe security is based on:

require user interaction: to avoid automatic explotation and warn user about flash actions
new features that ovverride olds [...]

Cold Boot Attacks on Disk Encryption

As i usually say, computer must be secure at all ISO/OSI layers starting from physical layer. If physical layer is not secure, there ins’t security.Take a look at this research paper from Freedom to Tinker blog.
"Today eight colleagues and I are releasing a significant new research result.
We show that disk encryption, the standard approach to [...]

IT Security is Burning


Web Application (In)Security Uncensored

Oggi 13 novembre nell’ambito delle serate a tema del LUG Trieste, un talk sulle insicurezze del web, appuntamento alle 2030 a Trieste presso la Casa delle Culture di Ponziana in via Orlandini 38 (Visualizza su GoogleEarth, Istruzione su come arrivarci).
Web 2.0, Ajax, Javascript, Flash, una miriade di tecnologie per
aumentare le funzionalita` del moderno World [...]

Rails Security: Secure your Ruby on Rails web application

Ruby on Rails is a great Ruby framework for rapid development of web applications.
But default Rails comes with some (in)security features that must be hardened and fixed.
And a lot of the how to and tutorials in internet that publish the sponsor “websites in 5 minutes” help people to write insecure code.
Some examples:
File permission: default Rails [...]

Backscatter X-ray Van

Backscatter X-ray technology can show a lot of details, now this can be mobile. See this Van.