Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- The MS-CHAP Version 1 Authentication Protocol Has Been Deprecated in Windows Vista
- The MicroSoft Challenge Handshake Authentication Protocol version 1 (MS-CHAP v1) has been deprecated in Windows Vista. This paper discusses this change and provides methods to work around it. In Windows Vista, Microsoft has removed MS-CHAP v1 from the list of authentication protocols for dial-up connections, for broadband PPPoE connections, and...
- Tags: Authentication Protocol, Microsoft Windows Vista, Microsoft Corp., Authentication, MS-CHAP, Microsoft Windows, Microsoft Windows Vista (Longhorn), Network Security, Security, Operating Systems, Software, Networking
- White papers 2006-11-13
- Mutual Authentication Protocol for Low-Cost RFID
- Radio Frequency IDentification RFID is the latest technology to play an important role for object identification as a ubiquitous infrastructure. However, current low-cost RFID tags are highly resource-constrained and cannot support its long-term security, so they have potential risks and may violate privacy for their bearers. To remove security vulnerabilities,...
- Tags: Authentication Protocol, Privacy, Authentication, RFID, Security, Wireless, Biometrics
- White papers 2005-07-04
- Understanding the priorities in cryptography
- In recent news on Quantum cryptography, a company is pushing Quantum cryptography into the mainstream. Without judging the particular company, Cavium, or the merit of their products, I will say that people in general have huge misconceptions about cryptography and they need to be aware of them when theyevaluate security...
- Tags: cryptography, authentication protocol
- Blog posts 2005-02-08
- EAP Authentication Protocols for WLANs
- This chapter, from Cisco Press' Cisco Wireless LAN Security, examines the various authentication protocols such as the Extensible Authentication Protocol EAP, Protected EAP PEAP, the Lightweight Extensible Authentication Protocol LEAP, and EAP- Flexible Authentication via Secure Tunneling (EAP-FAST).The chapter begins with a look at the fundamental concepts and contexts of...
- Tags: Chapter, Authentication Protocol, WLAN, Cisco Systems Inc., Authentication, Security
- Book chapters 2005-02-04
- Security and Privacy on Authentication Protocol for Low-Cost RFID
- In the near future, Radio Frequency IDentification RFID technology is expected to play an important role for object identification as a ubiquitous infrastructure. However, low-cost RFID tags are highly resource-constrained and cannot support its long-term security, so they have potential risks and may violate privacy for their bearers. To remove...
- Tags: Authentication Protocol, Privacy, Authentication, RFID, Security, Wireless, Biometrics
- White papers 2005-01-25
- PPTP VPN authentication protocol proven very susceptible to attack
- Later today, Joshua Wright will release an upgraded version of his ultra-high speed password cracking tool called ASLEAP . For those of you already familiar with ASLEAP, you might be wondering what this has to do with Microsoft's PPTP VPN protocol since ASLEAP is a LEAP authentication dictionary attack tool....
- Tags: PPTP, password, ASLEAP
- Blog posts 2004-12-17
- Windows Server 2003 Trust Enhancements
- When Windows 2000 came out and introduced transitive trusts based on the Kerberos authentication protocol, things looked very different and trust relationships management in the Windows platform were greatly improved. Windows Server 2003 includes many enhancements in the fields on information security, with new ways to securely manage your organization's...
- Tags: Microsoft Windows Server, Authentication Protocol, Microsoft Windows, Microsoft Windows Server 2003, Servers, Operating Systems, Security, Software, Hardware
- White papers 2003-03-01
- Understanding Digest and Advanced Digest Authentication in IIS 6.0-Level 200
- There is much confusion between the Digest authentication protocol and the new Internet Information Server IIS 6.0 Advanced Digest authentication protocol. This webcast will explore and clarify the technical requirements and security issues of each of these protocols. It will also discuss how IIS 6.0 implements both protocols - the...
- Tags: Authentication Protocol, Authentication, Microsoft IIS Server, Security, Network Security, Networking
- Webcasts
Additional Resources
- GMail adds "https:"-only connections but still not by default
- Google has added a new "Browser Connection" feature to GMail to allow users to force e-mail sessions to always use the more secure "https:" protocol but, strangely, this is not turned on by default. In the Settings tab, at the very bottom, GMail users can now select...
- Tags: Google Inc., Google Gmail, HTTP, E-mail Providers, Cloud Computing, Internet, Ryan Naraine
- Blog posts 2008-07-25
- Click fraud in 2nd quarter of 2008 more sophisticated, botnets to blame
- Whereas the overall click fraud rate isn't increasing, it's not decreasing either, remaining flat for the first two quarters of 2008, according to data gathered from the Click Fraud Network, consisting of more than 4,000 online advertisers and agencies. Click Forensics report for the second quarter of 2008, indicates that...
- Tags: Click Fraud, RK West, Dancho Danchev
- Blog posts 2008-07-25
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soon
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soonTTLSomething I wish I'd asked during the webcast and which I can't quite get my head around:It was said that setting a long TTL doesn't help because of the way delegation works - has to...
- Tags: Domain names, DNS server, TTL, server, Kaminsky
- Discussion threads 2008-07-24
- Speculation over possible Skype backdoor
- There's growing speculation coming out of Europe that there's a backdoor in Skype that allows remote eavesdropping of telephone conversations. A report in the reputable Heise Online says the issue was discussed at a meeting with ISPs last month where high-ranking officials at the Austrian interior...
- Tags: Skype Technologies S.A., Telecom & Utilities, Internet Service Providers (ISPs), Internet, Ryan Naraine
- Blog posts 2008-07-24
- Childs rigged crazyquilt private network
- The prosecution unveiled more details on the lunacy in San Francisco in court filings that urged the judge to keep rogue network administrator Terry Childs' bail at $5 million. The Chronicle reports that prosecutors say that Childs had over 1,000 modems secreted around the city, forming his own private network...
- Tags: Network, Prosecutor, Networking, Productivity, Richard Koman
- Blog posts 2008-07-24
- Facebook gets serious about app quality
- Facebook at its F8 developer powwow had a bevy of announcements that garnered interest, but among the most notable were its efforts to improve the quality of applications on the social networking site. First, the brief recap of Facebook's news (statement, Steve O'Hear's takeaways, Webware and Techmeme...
- Tags: Facebook, Larry Dignan
- Blog posts 2008-07-24
- |)ruid and HD Moore release part 2 of DNS exploit
- |)ruid and HD Moore release part 2 of DNS exploitSo, Linux's BIND the first to be exploited...So, Linux's BIND the first to be exploited...Nice work!CoolNate, nice post and analysis!Wasn't the replacing the ns.victim.com cache entry part of the Halvar Flake speculation? I thought first part of the exploit was to...
- Tags: Domain names, NETWORKING, Operating systems, Alecco, DNS, ruid, exploit, HD Moore, Linux
- Discussion threads 2008-07-24
- Attack code published for DNS flaw
- The urgency to patch Dan Kaminsky's DNS cache poisoning vulnerability just went up a few notches. Exploit code for the flaw, which allows the insertion of malicious DNS records into the cache of the target nameserver, has been added to Metasploit, a freely distributed attack/pen-testing tool....
- Tags: Ryan Naraine
- Blog posts 2008-07-23
- Microsoft gives a new Xbox 360 experience
- Microsoft gives a new Xbox 360 experienceNow, why can't they get their OS right?I'm probably too old to be a fan boy here, especially since I love about every game platform. But as a XBL user I can say Microsoft has seriously earned some respect points with the whole...
- Tags: Game players, Microsoft Xbox, Microsoft Corp., Xbox 360 experience, new Xbox 360, PC, hard drive, Microsoft Xbox 360, operating system
- Discussion threads 2008-07-23
- A look at the recent Firefox 3 vulnerability
- True to form, Billy Rios promised a more in depth look at the MSFA2008-35 vulnerability which is another protocol handler flaw in Firefox 3. As previously reported here, this was another protocol handler flaw that led to arbitrary remote command execution, and is especially dangerous since it can be deployed...
- Tags: Mozilla Firefox 3.0, Mozilla Firefox, Apple Safari, Vulnerability, Protocol Handler, Firefox3, Security Decision, Web Browsers, Security, Internet, Nathan McFeters
- Blog posts 2008-07-22
- Do we need to wipe the slate with x86?
- A few days ago an industry colleague and I were having a discussion about Linux and whether or not it is necessary for it to be application compatible or simply just "interoperable" with Windows from a protocol and data exchange standpoint. His view is that Linux...
- Tags: Intel X86, Architecture, IBM Corp., Linux, Microsoft Windows, Processors, Operating Systems, Software, Semiconductors, Hardware, Components, Jason Perlow
- Blog posts 2008-07-22
- 2008 Pwnie Award nominees announced
- Well, after getting 134 nominations, and spending countless hours pulling out nominees, the judges for the 2008 Pwnie Awards have announced the final nominees to be voted on. From the site: The final list of nominees for the nine Pwnie Award categories is ...
- Tags: Nominee, Vulnerability, XSS, Attack, Flaw, Dan, XSS Flaw, Lifelock, Security, Nathan McFeters
- Blog posts 2008-07-21
- << Previous
- page 1 of 1
- Next >>
White Papers and Webcasts