RB2: AusCERT podcast: Peter Gutmann's keynote address

May 20, 2009 --
The computer security industry has sometimes been compared unfavourably to the fashion industry, putting up flamboyant defences where it doesn't make any difference while paying no attention to the open barn door behind the curtain.
Why do we allow three retries for passwords instead of two, or four, or thirty-eight? How effective are SSH fingerprints? And how's the ol' PKI thing doing?
This talk will look at some widespread examples of defending where the enemy isn't, including the underlying threat models (or lack thereof), the effectiveness of the defences, and the real-world pressures and externalities that affect them, along with various modest proposals for alternative approaches.
User login
Recent podcasts
-
Symantec and McAfee kick off the year of the Dragon with some decent lulzā¦
-
Russians owned our pumps. Persians pwned our drones.
-
How to turn your Kindle into a free, global SSH and IRC modem...
-
Does the hype match the reality?
-
Rootkitting OS X, fun with EFI bootloaders and more...



Recent comments
1 day 4 hours ago
2 days 5 hours ago
1 week 5 days ago
1 week 6 days ago
1 week 6 days ago
3 weeks 3 days ago
3 weeks 4 days ago
5 weeks 2 days ago
5 weeks 3 days ago
5 weeks 3 days ago