Таг Архива: voicesecurity

RFC 6189: ZRTP е конечно стандард!

Конечно ZRTP е доделен официјален RFC задача, RFC6189 ZRTP: Медиумите Пат Клучни договор за Unicast Безбедна РТП.

Тоа мораше како зависноста на SRTP со AES големина на клуч од 256bit дека сега е дефиниран како RFC6188 .

Тоа е возбудливо да се види на RFC конечно ослободен, како што тоа е важна пресвртница да го поставите ZRTP како официјален стандард за крај-до-крај енкрипција многу сличен на PGP е за пораки.

Сега секоја организација во светот ќе биде официјално можат да се имплементираат ZRTP за крај-до-крај протокол кодирање на гласот

Во моментов 3 различни јавни употреби на ZRTP протокол постои:

Секој од нив да обезбеди различни карактеристики на протоколот, но најважните се знае дека се интероперабилни.

Новиот бран доаѓа до кодирање на гласот светот, irrupting во сива зона каде што повеќето од компаниите прават телефон енкрипција системи го спроведува сопствени енкрипција.

Сега е стандардна е поставување и постојат неколку причини лево кон спроведување на нешто различно.

Hurra г-дин Цимерман и сите на заедницата на компании (како PrivateWave ) и поединци (како Вернер Dittmann ) кои работеле на неа!

Денес е голем ден, таков вид на технологија е сега официјално, а исто така со повеќе постоечки спроведувањето!

Филип, си го направила повторно, мојата комплименти на вашиот чист дух и решеност :-)

Сподели

Напредокот за GSM напукнување во Фрајбург универзитет

Возбудлив свет на мобилен протоколи (GSM, GSM-R, ТЕТРА, UMTS, итн) хакирањето е добивање официјален истражувачки активности од универзитетите.

Инвестицијата да се направи Свет код изданија на напукнување софтвер е давање можност на студентите на универзитет да работат на тоа, да се подобри тоа и го направи силна истражување.

Универзитетот во Фрајбург само го објави документот Практична вежба на GSM енкрипција А5 / 1 , заедно со gsmframencoder поддршка алатка за подобрување на душкаат, декодирање и напукнување процес.

Отворање на хардвер, отворање на софтвер, отворање протокол покаже слабоста на било каков вид на комерцијален метод или процес за да се изгради-up комуникација и безбедносни технологии.

Тоа треба да биде цел на секој научниците да се обидат да го отворите-up и попуштат било каков вид на сопственички и затворена технологија за да ја принуди на индустријата да оди на само со интероперабилни и отворен пристап при дизајнирање телекомуникациски протоколи.

Сподели

ТЕТРА хакирањето доаѓа: OsmocomTETRA

Тоа е многу возбудливо да се види ослободување на OsmocomTETRA , првиот Свет СПВ ( Софтвер Дефинирани радио ) имплементација на ТЕТРА demodulator, PHY и пониски MAC слоеви.

Тоа е верзија ТЕТРА на GSM airprobe дека го отклучите пристап до податоци и рамката на ТЕТРА комуникациски протокол, давајќи им голема хакирањето можност!

Сега дека, исто така, ТЕТРА технологија е отворена ние треба да се очекува, во текот на оваа 2011 година, за да ја видите Свет ТЕТРА sniffers и најверојатно, исто така, ЧАЈ енкрипција (за енкрипција Тетра Алгоритам) скршен!

ТЕТРА се користи од страна на полицијата, службите за итна помош и војски како алтернатива мобилна комуникациска мрежа што може да работи дури и без достапноста на мрежна покриеност (само мобилен-кон-мобилен без базна станица) и да се обезбеди некои посебни висока достапност услуги.

Напишав за ТЕТРА во мојот слајд Големи Гласот безбедност протокол за преглед .

Во OsmocomBB мејлинг-листи веќе имаше дискусија околу некои мрежа ТЕТРА статус:

  • Белгија Полицијата ТЕТРА Astrid мрежа: енкриптирани
  • Германската полиција тест ТЕТРА мрежа во Ахен: енкриптирани
  • Некои екс-jugoslawia ТЕТРА мрежа: енкриптирани
  • Холандија C200 ТЕТРА мрежа: TEA2 криптирани со статични клучеви
  • Велика Британија Airwave ТЕТРА мрежа: TEA2 криптирани со TEA2

Тоа ќе биде навистина забавно да се види дека новите полициски и спасувачка служба хакирање враќајќи се од старите аналогни возраст до нови дигитални радија :-)

Сподели

Zorg, новата C + + и Java ZRTP спроведување јавна порака

Здраво на сите, денес во PrivateWave Italia SpA, италијански компанија се ангажирани во развојот на технологии за заштита на приватноста и безбедноста на информациите во гласот телекомуникации каде сум јас CTO, ние порака Zorg, нов софтвер со отворен код ZRTP протокол имплементација достапни за преземање од http://www. zrtp.org .

ZRTP [1] предвидува крај-до-крај размена на клучеви со Елиптичен крива Diffie-Hellmann 384bit и AES-256 SRTP енкрипција.

Zorg е првобитно развиен и имплементирани во PrivateGSM PrivateWave гласот енкрипција производи достапни за следните платформи: Blackberry, Нокиа и IOS (iPhone).

Zorg C + + е интегриран со PJSIP со отворен код VoIP пакети [2] и тоа е предвидено како интеграција печ против PJSIP 1.8.5. Тоа е тестиран на iPhone, Symbian, Windows, Linux и Mac OS X.

Zorg Јава е интегриран во рамките на сопствени верзија на MJSIP [3] со отворен код пакети на Blackberry платформа и тоа вклучува употребата на меморијата оптимизации се потребни за да се намали на минимум ѓубре колектор активност.

Двете платформи да ги раздели и модуларен криптографски назад-завршува така што криптографски алгоритми спроведувањето може да биде лесно заменети со други оние.

. Zorg се лиценцирани според лиценцата на GNU AGPL и изворниот код е достапен на github на https://github.com/privatewave/ZORG .

Ние сме ослободување тоа под софтвер со отворен код и во кохерентност со нашиот пристап кон безбедноста [4] како што ние навистина се надевам дека тоа може да биде корисно за софтвер со отворен код екосистем да се создаде нова гласовна енкрипција системи за поддршка на слободата на говорот.

Повеќе од 20 pjsip-базирани на слободен софтвер VoIP енкрипција софтвер и неколку напишани во Јава директно би можеле да имаат корист од Zorg порака.

Ние ќе бидеме среќни да добијат предлог на соработка, нови интеграција, нови криптографски назад-завршува, бубачки извидништвото и што и корисно да се подобрат и нека ZRTP афирмира како глас енкрипција стандард.

Zorg е достапна од http://www.zrtp.org .

[1] ZRTP: http://en.wikipedia.org/wiki/ZRTP
[2] PJSIP: http://www.pjsip.org
[3] MJSIP: http://www.mjsip.org
[4] за безбедност на пристап: http://www.privatewave.com/security/approch.html

Сподели

Шифрирана мобилни на фиксни телефонски повици со Ѕвездичка 1.8

Ние само го објави техничка Упатство за како да се изгради препорачана мобилен на фиксната VoIP инфраструктура со:

Во наредните недели други HOWTO како овој ќе излезе со користење на друг сервер платформи како што се FreeSWITCH, сите во духот на транспарентноста и потпора на Свет безбедносни технологии.

Сподели

PrivateGSM: BlackBerry / iPhone / Нокиа мобилни кодирање на гласот со ZRTP или SRTP / SDES

Јас апсолутно се избегне да го користам мојот личен блог да се направи промоција на било каков вид на производ.

Тоа време тоа не е различно, но јас сакам да ви кажам факти за производи јас работам на без фенси маркетинг, но остануваат технички.

Денес, на PrivateWave каде сум јас CTO и ко-основач , ние објавен јавно мобилен VoIP енкрипција производи за Blackberry, iPhone и Nokia:

  • На 1-ви некогаш Blackberry шифрирана VoIP со ZRTP - PrivateGSM VoIP Професионална
  • На 1-ви некогаш iPhone шифрирана VoIP со ZRTP - PrivateGSM VoIP Професионална
  • На 1-ви некогаш Blackberry шифрирана VoIP клиент со SRTP со SDES размена на клучеви над СИП / TLS - PrivateGSM VoIP претпријатија

logo-privatewave-colore.png

На PrivateWave ние ги користиме на различен пристап во однос на повеќето кодирање на гласот компанија таму, да се прочита нашите пристап кон безбедноста .

Релевантноста на оваа производи во технологијата и индустријата пејсаж може да се сумираат како што следи:

  • Тоа е првиот кодирање на гласот компанија со користење само на стандардите безбедносни протоколи (а ние се очекува на пазарот ќе реагира, како што тоа е јасно дека комерцијален технологија доаѓа од наследството на ЦДХВ не може да обезбеди иста вредност)
  • Тоа е првиот пристап во кодирање на гласот да се користи само со отворен код и стандард енкрипција мотор
  • Тоа е првиот кодирање на гласот пристап да им обезбеди на различни безбедносни модел со користење на различни технологии (крај-до-крај за ZRTP и крај-до-сајт за SRTP )

Оние пакет на мобилен Безбедна клиенти, наменета за професионални безбедносни користат само со помош на најдобрите телекомуникациски и безбедносни технологии, да обезбеди висок степен на заштита заедно со добри перформанси, исто така, во лоши мрежа услови:

На апликации се:

icona-pgsm.png

Поддржани мобилни уреди се:

Во врска со ZRTP решивме да се нагласи и се водат сите безбедносни и параноично функција на протоколот со некои малку прилог:

Нашите строги адресар интеграција, оди подалеку од ZRTP RFC спецификација, кои можат да бидат подложни на одредени напади кога се користи на мобилни телефони, бидејќи на однесување на корисниците од не да се погледне во мобилен екран.

Нашите paranoy начин на користење на ZRTP ублажат такви услови, ние ќе пишувам за ова подоцна и / или ќе додадете специфични детали за RFC инклузија.

Некои зборови за PrivateGSM Professional со крај-до-крај енкрипција со ZRTP

Прочитајте технички лист таму!

Да го преземете кликнете тука и само стави вашиот телефонски број

Тоа се резултатите од напорната работа на сите мои многу квалификувани вработени (16 лица работеа на овој 6 проекти за 3 различни платформи) на предизвикувачки технологии (кодирање на гласот) во тешка работна околина (валкани мобилни мрежи и валкани мобилни оперативни системи) за повеќе од 2 години.

Многу сум горд на нашите вработени!

Што е следно?

Во наредните недели ќе видите ослободување на голем сет на документација како што се интеграција со звезди, freeswitch и други безбедносни от телефонска централа, заедно со некои возбудливи други безбедносни технологија вести дека јас сум сигурен дека ќе бидат забележани ;)

Ми беше напорна работа и повеќе треба да се направи, но јас сум убеден дека безбедноста и Свет заедница ќе се допаѓа како производи и нашите транспарентен пристап, исто така, со отворен важни изданија и софтвер со отворен код интеграција кои го прават многу политички неутрален (задна врата бесплатно) технологија .

Сподели

Не секој елиптична крива е иста: преку на КЕШ безбедност

 Моето КЕШ крива за безбедност и селекција анализа

vn9jna1BdgrzDCYNBJHi09q09q.jpg

Повеќето модерни крипто употреба Елиптичен крива Криптографски (КЕШ), кои, со помал големина на клуч и да се намали пресметка моќ, даваат еквивалентни безбедносните сили на традиционалните крипто систем познат како Д.Х. (Diffie-Hellman) или RSA (Rivest, Самир и Adleman).

Не секој знае дека КЕШ енкрипција е избран за секоја идна енкрипција апликации и дека дури и TLS / SSL (енкрипција се користи за обезбедување на веб) се сели во КЕШ.

Најдов многу на т.н. "неслободни енкрипција производи", која напуштени RSA и Д.Х. да оди со КЕШ алтернативи, кои имаат тенденција да произволни употреба КЕШ битен клуч големината, без утврдување кој вид на КЕШ крипто се навикнеш.

Сепак, постои многу конфузија околу елиптичен криви, со многу различни имиња и големина на клуч што тешко за не-Криптографски-искусен корисник за да направите свој фигура при оценување некои работи крипто.

Бидејќи на толку дифузен конфузија решив да ја направам мојата сопствена анализа за да дознаете кои се најдобрите КЕШ енкрипција криви и право КЕШ големина на клуч за употреба.

Оваа анализа би сакале да се обезбеди безбедноста индустрија базирана избор меѓу разни криви и големина на клуч, оставајќи на математички и крипто аналитички согледувања што е веќе направено во текот на годините, сумирање на разни избори земени во неколку стандарди и безбедносни протоколи.

Првиот заклучок.

Од мојата анализа само следната КЕШ криви се за да се смета за употреба во енкрипција системи, бидејќи сте само еден избран меѓу различните власти (ANSI, зимскиот, дисторзии, NIST, КЕШ BrainPool), различни безбедносни протокол стандарди (IPSec, OpenPGP, ZRTP, вклучување, SSL / TLS) и само еден појавување на зимскиот Suite Б барања за безбедност (де-факто стандард и за НАТО воено животната средина):

  • Елиптични премиерот крива 256 битна - П-256
  • Елиптични премиерот крива 384 малку - П-384

со задолжително, само за навистина параноични дека сакате да добиете повеќе големина на клуч малку, уште не сметаат за корисни:

  • Елиптични премиерот крива 521 малку - П-521

Јас би сакал да констатирам дека Koblitz криви треба да се избегнува, во било која големина на клуч (163/283/409/571), како тие не се доволно гаранција на крипто аналитички активност и ефикасно тие се:

  • Не се дел од зимскиот Suite-Б криптографијата избор
  • Не се дел од КЕШ Brainpool избор
  • Не се дел од ANSI X9.62 избор
  • Не се дел од OpenPGP-КЕШ продолжување избор
  • Не се дел од вклучување продолжување за КЕШ крива избор

Ве повикувам читателот да го следат низ моите анализа за да се разберат основите кои би можеле да се разберат дури и без длабоки техничка позадина, но барем со добра технолошки позадина на некои основни малку на криптографијата.

 Еве ќе одиме со анализата
 

Мојата цел е да се направи анализа за тоа што / како на отворено научни и безбедносната заедница Изберете КЕШ крипто систем за употреба во безбедносни протоколи и стандарди дефинирани од IETF RFC (оние кои ги дефинираат Интернет стандарди во отворен и рецензирани начин).

Подолу збир на RFC Воведување на КЕШ во постоечките систем кој се анализираат за да се разбере она што е подобро да се користи и што е подобро да се исклучи:

  • RFC5639 : КЕШ Brainpool Стандардна криви & крива генерација
  • RFC4869 : зимскиот Suite Б Криптографски апартмани за IPsec
  • RFC5430 : зимскиот Suite Б ОК за преносна безбедност (TLS)
  • RFC5008 : зимскиот Suite Б во Безбедна / мултинаменски интернет маил Екстензии (S / MIME)
  • RFC3766 : Одредување Силни за јавни клучеви користи за размена на симетрични клучеви
  • RFC5349 : Елиптичен крива Криптографија (КЕШ) Поддршка за Јавен клуч за криптографија за првична проверка на автентичност во вклучување (PKINIT)
  • RFC4492 : Елиптичен крива Криптографија (КЕШ) Спортот апартмани за преносна безбедност (TLS)
  • ZRTP кодирање на гласот од Филип Цимерман КЕШ крива
  • КЕШ во OpenPGP (нацрт г сплав-jivsov-OpenPGP-КЕШ-06 )
  • КЕШ криви избрани од страна на Microsoft за смарт картичка, вклучување најава

Ние ќе ги искористиме изборот направен од страна научник дефинирање интернет за безбедност на протоколи да се направи дел од нашата оценка.
Дополнително мора да се сфати дека крива селекција доаѓа од различни органи кои направија свои избор на криви со цел да се каже за индустријата што да се користи и што да прескокнете:

Ние ќе ги искористиме изборот направен од страна научник дефинирање барања за безбедност во стандардизацијата агенции да се направи дел од нашата оценка.
Покрај тоа, нешто што повеќето луѓе не го знаат, но дека тоа е исклучително важно за нашата анализа, е дека постојат различни видови на КЕШ крива криптографијата и нивната "големина" е различен во зависност од видот на крива:

  • КЕШ криви над премиер поле (честопати опишуван како Елиптичен крива и претставен од страна на P-keysize)
  • КЕШ криви над Бинарни поле (честопати опишуван како Koblitz крива и претставен од страна на К-keysize)

Со оглед на безбедносните сили еквивалентност на Елиптичен крива и крива Kobliz имаат различни големина на клуч, на пример, кога читаме КЕШ 571 ние се однесуваат на Koblitz крива со еквивалентен сила да КЕШ 521 премиерот крива.

Споредбата на силата помеѓу елиптичен криви и Kotbliz криви е пријавена подолу (од Mikey КЕШ интернет Нацрт ):

 | Koblitz | КЕШ | DH / DSA / RSA
 | 163 | 192 | 1024
 | 283 | 256 | 3072
 | 409 | 384 | 7680
 | 571 | 521 ​​| 15.360

Подолу има споредба на сите избрани криви од страна на сите различни ентитети и нивните име (од IETF RFC4492 за КЕШ употреба за TLS ):

 Крива имиња избрани од страна на различни организации за стандардизација
 ------------ + --------------- + -------------
 SECG | ANSI X9.62 | NIST
 ------------ + --------------- + -------------
 sect163k1 | | NIST К-163
 sect163r1 | |
 sect163r2 | | NIST Б-163
 sect193r1 | |
 sect193r2 | |
 sect233k1 | | NIST К-233
 sect233r1 | | NIST Б-233
 sect239k1 | |
 sect283k1 | | NIST К-283
 sect283r1 | | NIST Б-283
 sect409k1 | | NIST К-409
 sect409r1 | | NIST Б-409
 sect571k1 | | NIST К-571
 sect571r1 | | NIST Б-571
 secp160k1 | |
 secp160r1 | |
 secp160r2 | |
 secp192k1 | |
 secp192r1 | prime192v1 | NIST P-192
 secp224k1 | |
 secp224r1 |​​ | NIST P-224
 secp256k1 | |
 secp256r1 | prime256v1 | NIST P-256
 secp384r1 | | NIST P-384
 secp521r1 | | NIST P-521
 ------------ + --------------- + -------------

Што веднаш се појави е дека постојат само две криви избрани од страна на сите органи, и дека постои општ фрлање на koblitz криви од ANSI.The само најчесто се согласи меѓу 3 власти се следниве две КЕШ крива:

  • secp192r1 / prime192v1 / NIST P-192
  • secp256r1 / prime256v1 / NIST P-256

На оние избор на КЕШ крива за TLS на RFC5430 прескокнаа целосно koblitz криви и избрани за употреба само:

  • P-256, Р-384, Р-521

На КЕШ Brainpool прескокнаа целосно Koblitz криви и избрани за употреба на следниве КЕШ криви:

  • P-160, Р-192, Р-224, Р-256, Р-320, Р-384, Р-512 (тоа е само особено бидејќи тоа не е П-521, но P-512, единствениот клуч големина наведени од страна на КЕШ brainpool. Tnx Иан Симонс од Атена СХС )

На интернет OpenPGP-предлог за КЕШ употреба во PGP г сплав-jivsov-OpenPGP-КЕШ-06 прескокнаа целосно Koblitz криви и избрани следниве КЕШ криви

  • P-256, Р-384, Р-521

На вклучување протокол продолжување за КЕШ употреба, дефинирани во RFC5349 и што е дефинирано од страна на Microsoft за смарт картичка, најава прескокнаа целосно Koblitz криви и избрани следниве КЕШ криви:

  • P-256, Р-384, Р-521

Значи, звучи јасно дека правото за избор на КЕШ е за P-256, Р-384 и Р-521, додека Koblitz крива се прескокнати за Топ Сикрет употреба и за какви било безбедносни чувствителни протокол (IPSec, OpenPGP, ZRTP, вклучување, SSL / TLS).

Зошто сум направил оваа анализа?

Јас имам направено оваа анализа, по разговорите што ги имаше во врска со одредени кодирање на гласот производи, сите врз основа на сопствени и неслободни протоколи, кои се сите со користење Елиптичен крива Diffie Hellman 571 bit / ECDH 571/571-битна ECDH / Koblitz 571 бита.
Сите нив се користи за К-571, кој, како што е опишано претходно, беше отстранета од сите безбедносни чувствителна средина и протоколи и се сметам за дизајнер на кодирање на гласот нешта мислам дека нивниот криптографски избор е апсолутно не е најдоброто безбедност избор.
Веројатно тоа е направено само за маркетинг цел, бидејќи К-571 (Koblitz крива) се чини посилна од П-521 (Елиптичен крива врз основа на премиерот број). Ако имате "повеќе малку" вашите маркетинг момци можат да тврдат дека се "посигурни". Koblitz елиптична крива се побрзи од врвна тајна от премиер елиптична крива и така им даде на производ менаџер шанса да обезбеди "повеќе малку" во свој производ, додека одржување на размена на клучеви брзо.

Тоа е прашање на филозофски избор.

Сакам да го следи трендот на научната заедница со смирение да не да размислува за себе криптографски експерт, knowledgable повеќе од целокупната безбедност и научната заедница себе.

Сакам наместо да се користи само алгоритми кои се одобрени за употреба во многу чувствителни средини (врвна тајна класификација), кои биле избрани од страна на сите органи и работна група анализирање на енкрипција алгоритми постојните надвор-таму и кои ги претставуваат избор на речиси сите стандарди за безбедност протоколи (IPSec, OpenPGP, ZRTP, вклучување, SSL / TLS, итн.)
Сакам да смета на износот на мозоци работат на крипто јас го користам, дека проверката тоа е навистина безбеден, кои се оцени дали има некои слабост.

Бројот на Brais работи на Крипто широко дифузен се од редот на големина повеќе од бројот на мозоци работат на крипто користи од страна на само неколку луѓе (како Koblitz крива).
Па јас не сум демонизирање кои користат ECDH 571 користење Koblitz крива, но сигурно можам да тврдам дека тие не направиле најдобар избор во однос на безбедноста и дека секој безбедносните професионалци вршење на сигурносно бенчмаркинг ќе се разгледа на фактот дека Елиптичен крива Diffie Hellman 571 малку направено со Koblitz крива не е широко дифузен, тоа е фрлена од стандардните безбедносни протоколи и тоа не е сертифицирани за врвна тајна употреба.

Сподели

Далечински зграпчување Snom VoIP телефони

Предлагам читање од далечина прислушување VoIP телефони "на VoIP безбедност Алијансата Блог од Шон Merdinger .

А конкретен пример за тоа како тековната телефонија инфраструктура се добива се повеќе ранливи на сајбер напади.

Сподели

Говорна комуникација безбедност работилница

Здраво,

сум направил зборува за говорна комуникација безбедносни технологии на Универзитетот во Тренто по интересна размена на информации со Крипто лабораторија успеа професор Масимилијано Сала .

Предлагам заинтересирани луѓе да го прочита, особено во вториот дел, како што е иновативна категоризација на различните глас енкрипција технологии кои се користат во неколку сектори.

Се обидов да се објасни и да се извлече од оваа широко фрагментирани технолошкиот сектор преку обезбедување на широк преглед на технологии кои обично се апсолутно неповрзани една секој-друг, но практично сите тие се однесуваат на кодирање на гласот по категоризација:

  • Мобилни TLC индустрија кодирање на гласот стандарди
  • Владини и воени кодирање на гласот стандарди
  • Јавната безбедност кодирање на гласот стандарди
  • IETF кодирање на гласот стандарди
  • Misc комерцијален глас енкрипција технологии

Тоа е огромен slideware, 122 слајдови, јас предлагам да оди читањето на 2-ри дел скокнеш следење технологии преглед веќе се покриени со мојата презентација на 2009 година.

Говорна комуникација безбедност


Прикажи повеќе презентации од Фабио Pietrosanti .

Особено ми се допаѓа концептот на Чоколадо одделение енкрипција дека сакате да го обезбеди некои иновации на змија нафта Енкрипција концепт.

Но јас треба да добие повеќе во длабочина за Чоколадо одделение енкрипција контекст, веројатно ќе се направи пред крајот на годината со обезбедување на применети разбира на разбирање и оценување на практично вистинската безбедносниот контекст на различни кодирање на гласот технологија.

Сподели

GSM напукнување во пенетрација на тест методологии (OSSTMM)?

Како што повеќето од овој блог читателот веќе знаете, во изминатите години имаше многу активности поврзани со јавно истражување за GSM ревизија и напукнување.

Сепак, кога таму беше огромна медиумска покриеност на GSM напукнување резултати од истражувања, алатки за да се направи напукнување беше навистина рана фаза и уште многу неефикасни.

Сега Френк Стивенсон , норвешки cryptanalyst дека веќе се скрши на Содржина Scrambling систем на DVD видео диск, кој учествува на A51 напукнување проект започна од Карстен Nohl , објавен Kraken , новата подобрена верзија на A51 напукнување систем.

Интересно е да се забележи дека WiFi напукнување имаше слична приказна, како прва WiFi WEP напукнување откритие беше прилично бавен во претходните техники, но подоцна Korek, еден хакер работи на пукнатини код, подобрување на напад систем drammatically.

Тоа е приказна за безбедност истражувачка соработка, ќе почнете да истражување, некој го следат и да се подобри тоа, некои други го следат и подобри, тоа и на крајот ќе го добиете резултатот.

Прочитајте повеќе на Kraken GSM напукнување софтвер порака .

И Stay tuned како следната недела во Blackhat конференција Karsten Nohl ќе се објасни деталите на потребните хардвер поставувањето и детални инструкции за тоа како да го направи тоа :-)

Јас навистина би сакал да видам овие алатки приклучи на пенетрација Тестирање Linux Дистрибуција одјавување со OSSTMM методологија спроведување на тестирање на GSM следење и човекот во средината :-)

Ако работите продолжат на тој начин и Ettus истражување (Продуцентот на USRP2 софтвер радио користи за ниска цена GSM сигнал примање) не ќе се исклучи, ние се уште може да се види тоа.

Сподели

Змија-масло за безбедност тврди дека на крипто безбедносен производ

Безбедноста на пазарот расте, се повеќе компании оди на пазар, но колку од нив се сериозно она што го прават?

Знаете, прави безбедносна технологија значи дека сте лично одговорен за заштита на информациите на корисникот. Мора да ги направи свесни за она што им треба, токму она што ви се прави и кој вид на закана модел на вашиот производ заштити.

Еден типичен проблем на безбедносни карактеристики производот е претставен од неспособноста на корисникот да се оцени безбедноста на тврдењата на самиот производ.

Значи, има многу компании прават не-толку-етички маркетинг на безбедносни карактеристики, врз основа на фактите дека нема корисникот ќе биде во можност да го оцени.

Претходно објасни ситуацијата живеат во безбедност тема на змија нафта енкрипција, еволуција во научната криптографски животната средина кои ги споделите со нас денес се користи најдоброто од раса информации технологии за заштита без да се грижите премногу за backdoors или несигурности.

Ајде да зборуваме за змија нафта Енкрипција

Тоа е многу significative и тоа ќе биде навистина корисно за секој вид на безбедносен производ категорија да се направат некои силно и независно оценување водич (како OSSTMM за Пенетрација на тестирање), да се направи овој безбедносен процесот на евалуација навистина во рацете на корисникот.

Тоа ќе биде, исто така, многу убаво да се имаат некој прави анализа и евалуација на безбедносен производ компании, објавување извештаи за змија нафта знаци.

Сподели

Кина Енкрипција Регулативите

Здраво на сите,

i found this very interesting paper on China Encryption Import/Export/Domestic Regulations done by Baker&Mckenzie in the US.

It's strongly business and regulatory oriented giving a very well done view on how china regulations works and how it may behave in future.

Read here Decrypting China Encryption's Regulations (form Bakernet website) .

Сподели

The (old) Crypto AG case and some thinking about it

In the '90, closed source and proprietary cryptography was ruling the world.

That's before open source and scientifically approved encrypted technologies went out as a best practice to do crypto stuff.

I would like to remind when, in 1992, USA along with Israel was, together with switzerland, providing backdoored (proprietary and secret) technologies to Iranian government to tap their communications, cheating them to think that the used solution was secure , making also some consideration on this today in 2010.

caq63crypto.t.jpg

That's called The Crypto AG case , an historical fact involving the United States National Security Agency along with Signal Intelligence Division of Israel Ministry of Defense that are strongly suspected to had made an agreement with the Swiss cryptography producer company Crypto AG .

Basically those entities placed a backdoor in the secure crypto equipment that they provided to Iran to intercept Iranian communications.

Their crypto was based on secret and proprietary encryption algorithms developed by Crypto AG and eventually customized for Iranian government.

You can read some other facts about Crypto AG backdoor related issues:

The demise of global telecommunication security

The NSA-Crypto AG sting

Breaking codes: an impossible task? By BBC

Der Spiegel Crypto AG (german) article

Now, in 2010, we all know and understand that secret and proprietary crypto does not work.

Just some reference by top worldwide cryptographic experts below:

Secrecy, Security, Obscurity by Bruce Schneier

Just say No to Proprietary cryptographic Algorithms by Network Computing (Mike Fratto)

Security Through Obscurity by Ceria Purdue University

Unlocking the Secrets of Crypto: Cryptography, Encryption and Cryptology explained by Symantec

Time change the way things are approached.

I like very much the famous Philip Zimmermann assertion:

“Cryptography used to be an obscure science, of little relevance to everyday life. Historically, it always had a special role in military and diplomatic communications. But in the Information Age, cryptography is about political power, and in particular, about the power relationship between a government and its people. It is about the right to privacy, freedom of speech, freedom of political association, freedom of the press, freedom from unreasonable search and seizure, freedom to be left alone.”

Any scientist today accept and approve the Kerckhoffs' Principle that in 1883 in the Cryptographie Militaire paper stated:

The security of a cryptosystem should not depend on keeping the algorithm secret, but only on keeping the numeric key secret.

It's absolutely clear that the best practice for doing cryptography today obbly any serious person to do open cryptography, subject to public review and that follow the Kerckhoff principle.

So, what we should think about closed source, proprietary cryptography that's based on security trough obscurity concepts?

I was EXTREMELY astonished when TODAY, in 2010, in the age of information society i read some paper on Crypto AG website.

I invite all to read the Crypto AG security paper called Sophisticated Security Architecture designed by Crypto AG of which you can get a significant excerpt below:

The design of this architecture allows Crypto AG to provide a secret proprietary algorithm that can be specified for each customer to assure the perfect degree of cryptographic security and optimum support for the customer's security policy. In turn, the Security Architecture gives you the influence you need to be fully independent in respect of your encryption solution. You can determine all areas that are covered by cryptography and verify how the algorithm works. The original secret proprietary algorithm of Crypto AG is the foundation of the Security Architecture .

I have to say that their architecture is absolutely good from TLC point of view. Also they have done a very good job in making the design of the overall architecture in order to make a tamper-proof resistant crypto system by using dedicated crypto processor .
However there is still something missing:

T he overall cryptographic concept is misleading, based on wrong encryption concepts .

You may think that i am a troll telling this, but given the history of Crypto AG and given the fact that all the scientific and security community does not approve security trough obscurity concepts , it would legitimate to ask ourself:

Why they are still doing security trough obscurity cryptography with secret and proprietary algorithms ?



Hey, i think that they have very depth knowledge on telecommunication and security, but given that the science tell us not to follow the secrecy of algorithms, i really have serious doubt on why they are still providing proprietary encryption and does not move to standard solutions (eventually with some kind of custom enhancement).

Сподели

Mobile Security talk at WHYMCA conference

I want to share some slides i used to talk about mobile security at whymca mobile conference in Milan.

Read here my slides on mobile security .

The slides provide a wide an in-depth overview of mobile security related matters, i should be doing some slidecast about it putting also audio. Maybe will do, maybe not, it depends on time that's always a insufficient resource.

Сподели

iPhone PIN: useless encryption

I recently switched one of my multiple mobile phones with which i go around to iPhone.

I am particularly concerned about data protection in case of theft and so started having a look around about the iPhone provided protection system.

There is an interesting set of iPhone Business Security Features that make me think that iPhone is moving in the right path for security protection of the phone, but still a lot of things has to be done, especially for serious Enterprise and Government users.

201006011551.jpg

For example it turned out that the iPhone PIN protection is useless and it can be broken just plugging the iPhone to a Linux machine and accessing the device like a USB stick.

That's something disturbing my paranoid mindset that make me think not to use sensitive data on my iPhone if i cannot protect my data.

Probably an iPhone independent disk encryption product would be very useful in order to let the market create protection schemas that fit the different risk contexts that different users may have.

Probably a general consumer is not worried about this PIN vulnerability but for me, working within highly confidential envirnonment such as intelligence, finance and military, it's something that i cannot accept.

I need strong disk encryption on my mobile phone.

I do strong voice encryption for it , but it would be really nice to have also something to protect the whole iPhone data and not just phone calls.

Сподели

Exploit code against SecurStar DriveCrypt published

It seems that the hacking community somehow like to target securstar products, maybe because hacking community doesn't like the often revealed unethical approach already previously described in this blog by articles and user's comments.

In 2004 a lot of accusation against Hafner of SecurStar went out because of alleged intellectual property theft regarding opensource codes such as Encryption 4 the masses and legal advert also against the Free and opensource TrueCrypt project .

In 2008 there was a pre-boot authentication hacking against DriveCrypt Plus posted on Full-Disclosure.

Early 2010 it was the time of the fake infosecurity research secretly sponsored by securstar at http://infosecurityguard.com (that now they tried to remove from the web because of embarrassing situation, but backup of the story are available, hacking community still wait for apologies) .

Now, mid 2010, following a research published in December 2009 about Disk Encryption software vulnerabilities made by Neil Kettle (mu-b), Security researcher at digit-labs and Penetration tester at Convergent Network Solutions , DriveCrypt was found to be vulnerable and exploitable breaking on-device security of the system and exploit code has been just released.

Exploit code reported below (thanks Neil for the code release!):

  • Arbitrary kernel code execution security exploit of DriveCrypt: drivecrypt-dcr.c
  • Arbitrary file reading/writing security exploit via unchecked user-definable parameters to ZxCreateFile/ReadFile/ WriteFile: drivecrypt-fopen.c

The exploit code has been tested against DriveCrypt 5.3, currently released DriveCrypt 5.4 is reported to be vulnerable too as it has just minor changes related to win7 compatibility. Can anyone make a double check and report a comment here?

Very good job Neil!

In the meantime the Free Truecrypt is probably the preferred choice for disk encryption, given the fact that it's difficult to trust DriveCrypt, PGP has been acquired by Symantec and there are very bad rumors about the trust that people have in Symantec and there are not many widely available alternatives.

Rumors say that also PhoneCrypt binaries are getting analyzed and the proprietary encryption system could reveal something fun…

Сподели

great point of view

Because security of a cryptographic system it's not a matter of “how many bits do i use” but using the right approach to do the right thing to mitigate the defined security risk in the most balanced way.

security.png

Сподели

Encryption is not scrambling: be aware of scrambler!

Most of us know about voice scrambler that can be used across almost any kind of voice based communication technology.

Extremely flexible approach: works everything

Extreme performance: very low latency

but unfortunately…

Extremely weak: Scrambling cannot be considered secure.

Only encryption can be considered secure under the Kerckoff's principle .

So please don't even consider any kind of analog scrambler if you need real security.

Read deeply the paper Implementation of a real-time voice encryption system ” by Markus Brandau, especially the cryptoanalysis paragraph.

Сподели

SecurStar GmbH Phonecrypt answers on the Infosecurityguard/Notrax case: absolutely unreasonable! :-)

UPDATE 20.04.2010: http://infosecurityguard.com has been disabled. Notrax identity became known to several guys in the voice security environments (cannot tell, but you can imagine, i was right!) and so our friends decided to trow away the website because of legal responsibility under UK and USA laws.

UPDATE: Nice summary of the whole story (i know, it's long and complicated to read at 1st time) on SIPVicious VoIP security blog by Sandro Gauci .

Following my discoveries, Mr. Hafner, SecurStar chief exec, tried to ultimately defend their actions, citing absolutely unreasonable excuses to The Reg instead of publicly apologizing for what they have done: creating a fake independent security research to promote their PhoneCrypt product .

He tried to convince us that the person behind IP 217.7.213.59, used by the author of infosecurityguard.com and pointing to their office DSL line, was this hacker Notrax, using their anonymous surfing service and not one of their employees at their office:

surfsolo.securstar.com – 69.16.211.133

Frankly speaking I can easily understand that Mr. Hafner is going do whatever he can to protect his company from the scandal, but the “anonymous proxy” excuse is at the very least suspicious.

How does the fact that the “independent research” was semantically a product review of PhoneCrypt, along with the discovery that the author come from the SecurStar GmbH IP address offices, along with the anonymity of this Notrax guy (SecurStar calls him a “well known it security professional” in their press release..) sound to you?

It's possible that earth will get an attack from outer space that's going to destroy our life?

Statistically extremely difficult, but yes, possible. More or less like the “anonymous proxy” story told by Mr. Hafner to cover the fact that they are the ones behind the infosecurityguard.com fake “independent security review”.

Hey, I don't need anything else to convince myself or to let the smart person have his own thoughts on this.

I just think that the best way for SecurStar to get out of this mess would probably be to provide public excuses to the hacking community for abusing the name and reputation of real independent security researches, for the sake of a marketing stunt.

Со почит,

Fabio Pietrosanti

ps I am currently waiting for some other infos that will more precisely confirm that what Mr. Hafner is saying is not properly true. Stay tuned.

Сподели
Markus : Markus Bensinger, System Administrator at SecurStar GmbH (linkedin profile)

6) There is 100% evidence that the anonymous hacker of http://infosecurityguard.com is from SecurStar GmbH

Below the data and reference that let us discover that it's all but a dishonest marketing tips and not an independent security research.

Kudos to Matteo Flora for it's support and for his article in Debunking Infosecurityguard identity !

The http referral tricks

When you read a link going from a website to another one there is an HTTP protocol header, the “Referral”, that tell you from which page someone is going to another webpage.

The referral demonstrated that the authors of http://infosecurityguard.com read my post, because it was coming from http://infosecurityguard.com/wp-admin/edit-comments.php that's the webpage you use as a wordpress author/editor to approve/refuse comments. And here there was the link.

That's the log entry:

217.7.213.59 – - [30/Jan/2010:02:56:37 -0700] “GET /20100129/licensed-by-israel-ministry-of-defense-how-things-really-works/ HTTP/1.0″ 200 5795 “ http://infosecurityguard.com/wp-admin/edit-comments.php ” “Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB6.3; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)”

The PBX open on the internet tell us that's SecurStar GmbH

The SecurStar GmbH PBX is open on the internet, it contains all the names of their employee and confirm us that the author of http:/infosecurityguard.com is that company and is the anonymous hacker called Notrax.

Here there is their forum post where the SecurStar GmbH guys are debugging IPCOPfirewall & Asterisk together (so we see also details of what they use) where there is the ip 217.7.213.59 .

SecurStarproof.png

That's also really fun!

They sell secure telephony but their company telephony system is openly vulnerable on the internet . :-)

I was thinking to call the CEO, Hafner, via SIP on his internal desktop PBX to announce we discovered him tricks.. :->

They measured their marketing activity

Looking at the logs of my website i found that they was sensing the google distribution of information for the following keywords, in order to understand how effectively they was able to attack competing products. It's reasonable, if you invest money in a marketing campaign you want to see the results :-)

They reached my blog and i logged their search:

infosecurityguard+cryptophone

infosecurityguard+gold-lock

”falsely claiming or creating the impression that the trader is not acting for the purposes relating to his trade, business, craft or profession, or falsely representing oneself as a consumer” is a criminal offense .

We have no doubt that PRPR (which is the UK-based *PR company for SecurStar GmbH, led by Peter Rennison and Allie Andrews as stated in SecurStar Press Release ) did provide their client with this information. Heck, they *are* in the UK, they simply cannot ignore that!

IANAL, but I would not be surpised if someone filed a criminal complaint or start civil litigation for unfair competition against SecurStar GmbH.
Whether this is going to be a matter for criminal and/or civil Courts or not is not that important. However, it is clear enough that SecurStar GmbH appears to be at least ethically questionable and not really worth of trust.

Nice try, gentlemen… however, next time just do it right (whether “right” for them means “in a honest manner” or “in a fashion not to be caught” I will let them choose)”

Fabio Pietrosanti (naif)

Сподели
That's something that pose serious consideration on the authority of information online.An anonymous hacker, with no reference online, made a product security review that appear like an independent one. I have to say that the fake review was very well prepared, it always posed good/bad things in an indirect way. It did not appeared to me at 1st time like a fake. But going deeply i found what's going on.

However Journalists, news media and blogger went to the TRAP and reviewed their fake research. TheRegister, NetworkWorld and a lot of blogs reported it. Even if the author was completely anonymous.

What they have done is already illegal in UK

SecurStar GmbH is lucky that they are not in the UK, where doing this kind of things is illegal .

Fabio Pietrosanti (naif)

Сподели
Tags , , , , | Comment (0)
business interception Privacy security technology

About the SecurStar GmbH Phonecrypt voice encryption analysis (criteria, errors and different results)

30 January 2010 – 2:02 am

This article want to clarify and better explain the finding at infosecurityguard.com regaring voice encryption product evaluation.
This article want to tell you a different point of view other than infosecurityguard.com and explaining which are the rational with extensive explaination from security point of view.
Today i read news saying: “PhoneCrypt: Basic Vulnerability Found in 12 out of 15 Voice Encryption Products and went to read the website infosecurityguard .

Initially it appeared to my like a great research activity but then i started reading deeply the read about it.I found that it's not properly a security research but there is are concrete elements that's a marketing campaign well done in order to attract public media and publicize a product.
Imho they was able to cheat journalists and users because the marketing campaign was absolutely well done not to be discovered on 1st read attempt. I personally considered it like a valid one on 1st ready (they cheated me initially!).

a – Security Trough Obscurity does not work

A basic rule in cryptography cames from 1883 by Auguste Kerckhoffs:

In a well-designed cryptographic system, only the key needs to be secret; there should be no secrecy in the algorithm.
Modern cryptographers have embraced this principle, calling anything else “security by obscurity.”
Read what Bruce Schneir, recognized expert and cryptographer in the world say about this
Any security expert will tell you that's true. Even a novice university student will tell you that's true. Simply because that's the only way to do cryptography.
Almost all product described in the review by SecurStar GmbH, include PhoneCrypt, does not provide precise details about their cryptographic technologies.
Precise details are:
  • Detailed specification of cryptographic algorithm (that's not just saying “we use AES “)
  • Detailed specification of cryptographic protocol (that's not just saying “we use Diffie Hellman ” )
  • Detailed specification of measuring the cryptographic strenght (that's not just saying “we have 10000000 bit key size “)

Providing precise details means having extensive documentation with theoretical and practical implications documenting ANY single way of how the algorithm works, how the protocol works with precise specification to replicate it for interoperability testing.
It means that scientific community should be able to play with the technology, audit it, hack it.
If we don't know anything about the cryptographic system in details, how can we know which are the weakness and strength points?

Mike Fratto, Site editor of Network Computing, made a great article on “Saying NO to proprietary cryptographic systems” .
Cerias Purdue University tell this .

b – NON peer reviewed and NON scientifically approved Cryptography does not work

In any case and in any condition you do cryptography you need to be sure that someone else will check, review, analyze, distruct and reconstract from scratch your technology and provide those information free to the public for open discussion.
That's exactly how AES was born and like US National Institute of Standard make crypto does (with public contest with public peer review where only the best evaluated win).
A public discussion with a public contest where the a lot of review by most famous and expert cryptographer in the world, hackers (with their name,surname and face, not like Notrax) provide their contribution, tell what they thinks.
That's called “peer review”.

If a cryptographic technology has an extended and important peer review, distributed in the world coming from universities, private security companies, military institutions, hackers and all coming from different part of the world (from USA to Europe to Russia to South America to Middle east to China) and all of them agree that a specific technology it's secure…
Well, in that case we can consider the technology secure because a lot of entities with good reputation and authority coming from a lot of different place in the world have publicly reviewed, analyzed and confirmed that a technology it's secure.

How a private company can even think to invent on it's own a secure communication protocol when it's scientifically stated that it's not possible to do it in a “proprietary and closed way” ?
IBM tell you that peer review it's required for cryptography .
Bruce Schneier tell you that “Good cryptographers know that nothing substitutes for extensive peer review and years of analysis.”
Philip Zimmermann will tell you to beware of Snake Oil where the story is: “Every software engineer fancies himself a cryptographer, which has led to the proliferation of really bad crypto software.”

c – Closed source cryptography does not work

As you know any kind of “serious” and with “good reputation” cryptographic technology is implemented in opensource.
There are usually multiple implementation of the same cryptographic algorithm and cryptographic protocol to be able to review all the way it works and certify the interoperability.
Supposing to use a standard with precise and extended details on “how it works”, that has been “peer reviewed” by the scientific community BUT that has been re-implemented from scratch by a not so smart programmer and the implementation it's plenty of bugs.

Well, if the implementation is “opensource” this means that it can be reviewed, improved, tested, audited and the end user will certaintly have in it's own had a piece of technology “that works safely” .

Google release opensource crypto toolkit
Mozilla release opensource crypto toolkit
Bruce Schneier tell you that Cryptography must be opensource .

Another cryptographic point of view

I don't want to convince anyone but just provide facts related to science, related to cryptography and security in order to reduce the effect of misinformation done by security companies whose only goes is to sell you something and not to do something that make the world a better.

When you do secure products, if they are not done following the proper approach people could die.
It's absolutely something irresponsible not to use best practice to do crypto stuff.

To summarize let's review the infosecurityguard.com review from a security best pratice point of view.

Product name Security Trough Obscurity Public peer review Open Source Compromise locally?
Caspertec Obscurity No public review Closed Да
CellCrypt Obscurity
No public review
Closed
Да
Cryptophone Transparency Limited public review Public Да
Gold-Lock Опскурноста
No public review
Closed
Да
Illix Obscurity
No public review
Closed
Да
No1.BC Obscurity No public review
Closed
Да
PhoneCrypt Obscurity
No public review
Closed
Да
Rode&Swarz Obscurity
No public review
Closed
Да
Secure-Voice Obscurity
No public review
Closed
Да
SecuSmart Obscurity
No public review
Closed
Да
SecVoice Obscurity
No public review
Closed
Да
SegureGSM Obscurity
No public review
Closed
Да
SnapCell Obscurity
No public review
Closed
Да
Tripleton Obscurity
No public review
Closed
Да
Zfone Transparency Public review
Open Да
ZRTP Transparency Public review
Open Да

*Green means that it match basic requirement for a cryptographic secure system

* Red / Broken means that it does not match basic requirement for a cryptographic secure system
That's my analysis using a evaluation method based on cryptographic and security parameters not including the local compromise context that i consider useless.

However, to be clear, those are only basic parameters to be used when considering a voice encryption product (just to avoid being in a situation that appears like i am promoting other products). So it may absolutely possible that a product with good crypto ( transparency, peer reviewed and opensource) is absolutely a not secure product because of whatever reason (badly written, not usable causing user not to use it and use cleartext calls, politically compromised, etc, etc).
I think i will prepare a broader criteria for voice crypto technologies and voice crypto products, so it would be much easier and much practical to have a full transparent set of criterias to evaluate it.

But those are really the basis of security to be matched for a good voice encryption system!
Read some useful past slides on security protocols used in voice encryption systems (2nd part).

Now read below some more practical doubt about their research.

The security concept of the review is misleading: any hacked device can be always intercepted!

I think that the guys completely missed the point: ANY KIND OF SOFTWARE RUNNING ON A COMPROMISED OPERATING SYSTEM CAN BE INTERCEPTED

Now they are pointing out that also Zfone from Philip Zimmermann is broken (a pc software), just because they install a trojan on a PC like in a mobile phone?
Any security software rely on the fact that the underlying operating system is somehow trusted and preserve the integrity of the environment where the software run.

  • If you have a disk encryption system but your PC if infected by a trojan, the computer is already compromised.
  • If you have a voice encryption system but your PC is infected by a trojan, the computer is already compromised.
  • If you have a voice encryption system but your mobile phone is infected by a trojan, the mobile phone is already compromised.

No matter which software you are running, in such case the security of your operating environment is compromised and in one way or another way all the information integrity and confidentiality is compromised.

Like i explained above how to intercept PhoneCrypt.

The only things that can protect you from this threat is running in a closed operating system with Trust Computing capability, implementing it properly.
For sure on any “Open” operating system such us Windows, Windows Mobile, Linux, iPhone or Android there's no chance to really protect a software.
On difficult operating system such as Symbian OS or RimOS maybe the running software can be protected (at least partially)

That's the reason for which the security concept that guys are leveraging to carry on their marketing campaign has no clue.
It's just because they control the environment, they know Flexispy software and so they adjusted their software not to be interceptable when Flexispy is installed.
If you develop a trojan with the other techniques i described above you will 100% intercept PhoneCrypt.

On that subject also Dustin Tamme l, Security researcher of BreakPoint Systems , pointed on on VoIP Security Alliance mailing lists that the security analysis is based on wrong concepts .

The PhoneCrypt can be intercepted: it's just that they don't wanted to tell you!

PhoneCrypt can be intercepted with “on device spyware”.
Зошто?
Because Windows Mobile is an unsecure operating environment and PhoneCrypt runs on Windows Mobile.
Windows Mobile does not use Trusted Computing and so any software can do anything.
The platform choice for a secure telephony system is important.
How?
I quickly discussed with some knowledgeable windows mobile hackers about 2 different way to intercept PhoneCrypt with an on-device spyware (given the unsecure Windows Mobile Platform).

Application Screenshots of application Video with demonstration of interception Network demonstration PhoneCrypt 5 0 1 CellCrypt 0 2 0 GoldLock 1 2 0

It's clear that PhoneCrypt is reviewed showing more features explicitly shown and major security features product description than the other.

Too much difference between them, should we suspect it's a marketing tips?

But again other strange things analyzing the way it was done…
If it was “an impartial and neutral review” we should see good and bad things on all the products right?

Ok, see the table below regarding the opinion indicated in each paragraph of the different reviews available of Gold-Lock, CellCrypt and Phonecrypt (are the only available) to see if are positive or negative.

Application Number of paragraphs Positive paragraphs Negative paragraphs Neutral paragraphs
PhoneCrypt 9 9 0 0
CellCrypt 12 0 10 2
GoldLock 9 0 8 1

Detailed paragraphs opinion analysis of Phonecrypt
Paragraph of review Opinion expressed
From their website DH 256 Negative Marketing feedback
Downad & Installation! Neutral Marketing feedback
Cracking it <10 ¾ Human, ¼ Android (Well that would be cool at least.) I am just an enthusiast of pretty much anything that talks binary and if it has a RS232 port even better. During the day I masquerade as an engineer working on some pretty cool projects at times, but mostly I do the fun stuff at night. I have been thinking of starting an official blog for about 4.5 years to share some of the things I come across, can't figure out, or just cross my mind. Due to my day job and my nighttime meddling, I will update this when I can. I hope some find it useful, if you don't, well you don't.

There are no information about this guy on google.
Almost any hacker that get public have articles online, post in mailing archive and/or forum or some result of their activity.
For notrax, nothing is available.

Additionally let's look at the domain…
The domain infosecurityguard.com is privacy protected by domainsbyproxy to prevent understanding who is the owner.
The domain has been created 2 months ago on 01-Dec-09 on godaddy.com registrar.

What's also very interesting to notice that this “unknown hacker with no trace on google about him that appeared on December 2009 on the net” is referred on SecurStar GmbH Press Release as a “An IT security expert”.

Maybe they “know personally” who's this anonymous notrax? :)

Am i following my own conspiracy thinking or maybe there's some reasonable doubt that everything was arrange in that funny way just for a marketing activity?

Social consideration

If you are a security company you job have also a social aspects, you should also work to make the world a better place (sure to make business but “not being evil”). You cannot cheat the skills of the end users in evaluating security making fake misleading information.

You should do awareness on end users, to make them more conscious of security issues, giving them the tools to understand and decide themselves.

Hope you had fun reading this article and you made your own consideration about this.

Fabio Pietrosanti (naif)

ps Those are my personal professional opinion, let's speak about technology and security, not marketing.
pps i am not that smart in web writing, so sorry for how the text is formatted and how the flow of the article is unstructured!

Сподели

Licensed by Israel Ministry of Defense? How things really works!

You should know that Israel is a country where if a company need to develop encryption product they must be authorized by the government.

The government don't want that companies doing cryptography can do anything bad to them and what they can do of good for the government, so they have to first be authorized.

Companies providing interception and encryptio n m ust apply to a license because Israel law on this is so restrictive to be similar to china law .

That's because those kind of technologies are considered fundamental for the intelligence and espionage capabilities of Israel country.

To give some example of “Licensed by Israel Ministry of Defense” companies:

GSM encryption products “Licensed by Israel Ministry of Defense” – Gold-lock

Interception of communication products “Licensed by Israel Ministry of Defense” – Verint

HF encrypted Radio “Licensed by Israel Ministry of Defense” – Kavit

Surveillance services and equipment “Licensed by Israel Ministry of Defense” – Multi Tier Solutions

For example how to apply for a “License by Israel Ministry of Defense” if you do encryption technologies in Israel?

Be sure to be an israeli company, click here and fill the forms.

Someone will contact you from encryption-control@mod.gov.il and will discuss with you whether to give you or not the license to sell.

What does the department of defense will require from an israeli company in order to provide them the authorization to make and sell interception and encryption products?

Well, what they want and what they really ask nobody knows.

It's a secret dealing of Israel Ministry of Defense with each “licensed” company.

What we know for sure is that Verint, a “Licensed by Israel Ministry of Defense”, placed a backdoor to intercept companies and governments in the US and Netherland into the interception systems they was selling.

Verint, a Licensed by Israel Ministry of Defense Company, provided to Israel government eavesdropped communications of private and government users in the United States and in the Netherland .

CIA officier reported that Israel Ministry of Defense was known to pay Verint a reimbursement of 50% of their costs in order to have from Verint espionage services trough their commercial activity on selling “backdoored” interception equipment to spy foreign users.

It can be a legitimate doubt that the cooperation within the Israeli Ministry of Defense may be problematic for an Israeli company that want to sell interception and encryption product abroad.

Those companies may be forced to make the interests of Israel Ministry of Defense and not the interests of the customers (like Verint scandal is a real-world example).

So, how would a “Licensed by Israel Ministry of Defense” be a good things to promote?

It represent the risk that the “Israel Ministry of Defense”, like is publicly known that it has already have done with Verint, will interfere with what the company do.

It represent the risk that the “Israel Ministry of Defense” may reasonably provide “reimbursement” of costs paying the company and get what they would likely would like to get.

So, what does really “Israel Ministry of Defense” want from Israel companies doing encryption and interception technologies?

Should we ask ourself whether Israeli companies doing encryption and interception businesses are more interested to do business or to do “outsourced espionage services” for their always paying customer, the “Israel Ministry of Defense”.

For sure, in the age of financial crisis, the Israel Ministry of Defense is a paying customer that does not have budget problem…

Strict control, strict rules, strong government strategic and military cooperation.

Be careful.

If you want to read more about this matters, about how technologies from certain countries is usually polluted with their governments military and secret services strategies stay tuned as i am preparing a post about this .

You will much better understand about that subjects on the “Licensed by Israel Ministry of Defense”.

Сподели

Gold-Lock Security Encryption Contest: be careful!

I commented:

Not having a public protocol specification is not even scientifically serious to make a marketing tricks like this.
I would say to gold-lock, let's release the source code and let anyone compile the cryptographic engine if you trust not to to have something nasty inside… ;)

Toni Koivunen from F-secure said:

So… They will pay $100k if you get through the AES and the hassle with keys.
If someone would pull it off they would certainly make a truckload more money elsewhere. Plus they would retain the rights to the code/technology that they created, which isn't the case if they go for the $100k since the License pretty clearly says that:
# An assignment letter to Gold Line, in a form satisfactory to Gold Line of your technology and the Work Plan (the “Technology”). Such assignment form shall enable Gold Line to transfer the rights on the Technology to Gold Line, including the right to register patents and all other rights.
# A release and waiver form, in a form satisfactory to Gold Line, duly executed by you and any other participant of any rights to the Technology.
Plus of course Gold Line retains the right to change the rules of the game with prior notice. Or needing to notify afterwards either.
Sounds fair :)

Michel Scovetta from Computer Associates said:

It sounds like the purpose of this is to get some cheap testing out of it, and to be able to say something like, “The best crypto experts in the world tried to break it, and were unable to.”

According to some of the docs on Gold Lock's website, they use ECC-256 and a “modified DH key exchange” (which tingles my spidey senses), SHA-256, and then XOR for the actual data encryption. They use practically blasphemous language like, “Each component of the Gold Lock Enterprise solution is tested and proven secure against any conceivable attack.”

*Proven* secure? *Any conceivable* attack? Yikes!

In another doc on their site, they talk about their first layer relying on 1024-bit RSA. GoDaddy doesn't even allow 1024-bit keys to be used anymore when generating $20 SSL certificates. They quote 300 billion MIPS-years to break, but if my math is correct, that comes down to about 52 days on the top supercomputer right now. Not trivial, but this is an offline attack, so time is on the side of the attacker.

The description then talks about the device generating 16k keys when you register the device. If the protocol is “secure”, then it should be “secure” with only a single key. If it's not secure with a single key, then generating 16k keys could only make it 16k times more secure, which is far off from a proof of security.

I agree with Fabio – a fair contest would be to include source code and the cryptographic specification. Also, as other contests have proven (eg SecureWebMail), the weakest point isn't usually the cryptography. It's all of the other stuff, and it doesn't look like any of it is being disclosed for the contest.

http://xkcd.com/538/

Mike

I would say that all those considerations from security experts from well known and established security companies bring us to consider that:

  • Gold-lock is not transparent on their encryption at all and they work trough bad practice of Security Trough Obscurity (no one know what's inside the product)
  • Gold-lock is not playing a fair game by proposing this 'security contest'
  • Gold-lock being certified by Israeli ministry of defence may raise doubt related to possible relationship with the intelligence… Read by post Certified by Israeli MInistry of Defense .

Voice security is a sensible matters and lacks of transparency and governmental relationship for cryptographic choices usually does not provide anything good…

Think about it…

Сподели

Political conflict in Turkey between Prosecutors and Wiretappers

It seems that in Turkey the Telecommunication Directorate (TIB), in charge of managing the wiretapping, intercepted the president of the Judge and Prosecutors Associations.

Prosecutors and Judge usually does not like being tapped, and so the 1st High Criminal Court ordered an audit of all the recording done by the TIB since 2006.

Read more here .

Сподели

Voice encryption in government sectors

I will make some in depth articles about how voice encryption really works in government environments.

The open standards and open source still have to reach the military and government environments for what's related to secure speech.

To give you an idea of the complexity and kind of particular issues that exists, look at the USA 3G Wireless Security: A Government Perspective and the A Waveform Architecture to Support Security and Interoperability in Multi-National Wireless Networks for Tactical Communication .

They are using so-custom protocols like Secure Communications Interoperability Protocol that require the use of patented MELPe ultra-narrowband codec that there's not a real market of application and equipment using this. Only a small elite of government controlled companies from few countries manage this de-facto lobby.

Should we change this bringing open standards also to government sectors?

Сподели

How the various audio compression codec sounds?

You know, we would not be able to use VoIP and have cheap international phone calls without audio compression codecs.

It's plenty of them, some royalty free, some patented by telco's lobby (think that some patented and royalty-based codec it's also a standard, where all market player have to pay the most aggressive one that acquired the patent while defining the standards).

However, there is a nice collection from vocal , to understand how they sounds.

Сподели