Re: Run a remailer, go to jail?

2003-04-01 Thread Derek Atkins
(or anyone) goes, I'm sure we'd all appreciate some notes on what transpired. I understand 17 different bills are being considered at this hearing, so don't blink or you may miss it. Peter Trei -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED

Re: meet in the middle attacks

2003-03-26 Thread Derek Atkins
, for example. Even use of MACs over exchanged values and pre-shared conventional keys can prevent many such attacks. However, not attempting to prevent such attacks -- especially given that they are very effective -- seems foolish at best. -- Derek Atkins Computer and Internet

Re: Face-Recognition Technology Improves

2003-03-16 Thread Derek Atkins
of frequent business travellers going through there many times. Ok Ok ok. I'm sorry for trying to do math on only 6 hours sleep before a flight. I mis-counted 0's. I'm sorry. -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED

Re: Face-Recognition Technology Improves

2003-03-15 Thread Derek Atkins
the number of trials. -- sidney markowitz [EMAIL PROTECTED] -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com - The Cryptography Mailing List

Re: Diffie-Hellman 128 bit

2003-03-14 Thread Derek Atkins
cryptography to [EMAIL PROTECTED] -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com - The Cryptography Mailing List Unsubscribe by sending unsubscribe

Re: Delta CAPPS-2 watch: decrypt boarding passes!

2003-03-07 Thread Derek Atkins
of those lovely unwritten rules that TSA seems to like imposing). -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com - The Cryptography Mailing List

Re: Delta CAPPS-2 watch: decrypt boarding passes!

2003-03-06 Thread Derek Atkins
had the mark, you were searched as you tried to board. If it did not, then you were not searched. I'm flying United out to the IETF next week, so I'll gladly report my findings. -derek -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information

Re: Delta CAPPS-2 watch: decrypt boarding passes!

2003-03-06 Thread Derek Atkins
about BOS. And I'll find out about ORD on my return flight. I consider gate checks rather rude, but then again I consider commercial travel in general rather annoying. If it weren't going to take me 3 days (rather than 6 hours) I would have just flown myself out to SF -derek -- Derek

Re: EU Privacy Authorities Seek Changes in Microsoft 'Passport'

2003-01-28 Thread Derek Atkins
unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com - The Cryptography Mailing List Unsubscribe by sending

Re: [IP] Master Key Copying Revealed (Matt Blaze of ATT Labs)

2003-01-24 Thread Derek Atkins
the pin twist be different at different pin-heights (by putting the drill-hole at a different twist-angle). I don't think this attack would work quite as easily on this design. -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED

Re: [IP] Master Key Copying Revealed (Matt Blaze of ATT Labs)

2003-01-24 Thread Derek Atkins
work quite as easily on this design. -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com - The Cryptography Mailing List Unsubscribe by sending

Re: DOS attack on WPA 802.11?

2002-12-08 Thread Derek Atkins
?. - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com

Re: open source CAs?

2002-10-10 Thread Derek Atkins
] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED]PGP key available

Re: unforgeable optical tokens?

2002-09-21 Thread Derek Atkins
| [EMAIL PROTECTED] | http://www.cs.cmu.edu/~eli/ (finished Ph.D., woohoo; looking for good work in the Seattle area) -derek PS: My Master's degree is from the Media Lab, so I can vouch for the fact that reasonable work is done there ... ;) -- Derek Atkins Computer

Re: Palladium and malware

2002-08-30 Thread Derek Atkins
viruses. application/shell anyone? (Yes, some Mail-readers actually implement this!) Cheers - Bill -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com

Re: SEC weighing civil injunction against RSA

2002-08-20 Thread Derek Atkins
million, until more than a month after reporting results, when it filed a quarterly report with the SEC. This story ran on page C3 of the Boston Globe on 8/20/2002. ? Copyright 2002 Globe Newspaper Company. -- Derek Atkins Computer and Internet Security Consultant [EMAIL

Re: get a grip on what TCPA is for

2002-08-16 Thread Derek Atkins
the TPM buy _ME_ when running my own machine? Of course, our task of understanding what TCPA/Pd is trying to do is made more difficult when proponents lie about what they are trying to do. Yep! -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL

Re: adding noise blob to data before signing

2002-08-10 Thread Derek Atkins
of a hash. Note that, in the grand scheme of things, performing the public key operation is significantly slower than performing the hash, so it really doesn't hurt you computationally to perform the hash. OTOH, your signature strength still depends on the strength of your hash. -derek -- Derek

Re: adding noise blob to data before signing

2002-08-10 Thread Derek Atkins
Nomen Nescio [EMAIL PROTECTED] writes: Derek Atkins replied: It depends on the signature algorithm. With RSA you can sign any message directly if said message is smaller than the public key size (N). DSA, however, requires the use of a hash. Actually, depending on the data being

Re: responding to claims about TCPA

2002-08-10 Thread Derek Atkins
honest to someone else vs. an application proving to YOU that it is being honest. Again, it is a question of ownership. There is the DRM side (you proving to someone else that you are being honest) vs. Virus Protection (an application proving to _you_ that it is being honest). -derek -- Derek

Re: building a true RNG (was: Quantum Computing ...)

2002-07-23 Thread Derek Atkins
but I see it all the time. To me, I think people just don't know the right term to use so they just put down something that sounds right to them, regardless of its correctness. -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED

Re: Schneier on Bernstein factoring machine

2002-04-17 Thread Derek Atkins
-empty threat model. I would certainly call the latter threat model paranoid; I would NOT call the former threat model paranoid -- I would call it a normal teenager :) -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED

Re: Schneier on Bernstein factoring machine

2002-04-16 Thread Derek Atkins
is surprised that Lucky didn't already upgrade to a key larger than 1024 bits, due to his paranoia. No offense meant, Lucky... -derek -- Derek Atkins Computer and Internet Security Consultant [EMAIL PROTECTED] www.ihtfp.com

Re: [linux-elitists] Re: Looking back ten years: Another Cypherpunksfailure (fwd)

2002-01-29 Thread Derek Atkins
, not the actual VoIP data. If you read the spec carefully you will notice that the RTP stream is NOT using IPsec for data protection. Enzo -derek -- Derek Atkins, Computer and Internet Security Consultant IHTFP Consulting (www.ihtfp.com) [EMAIL PROTECTED

Re: [linux-elitists] Re: Looking back ten years: Another Cypherpunksfailure (fwd)

2002-01-28 Thread Derek Atkins
initiation phase (e.g., through SIP or H.323). Alternatively, one could rely on IPSEC, but its support on the target machine cannot (yet?) be taken for granted; the RTP stack, on the opposite, is usually built into the application rather than the kernel. Enzo -- Derek Atkins

Re: Fingerprints (was: Re: biometrics)

2002-01-28 Thread Derek Atkins
) - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, Internet and Computer Security Consultant IHTFP Consulting (www.ihtfp.com) [EMAIL PROTECTED

Re: [linux-elitists] Re: Looking back ten years: Another Cypherpunksfailure (fwd)

2002-01-28 Thread Derek Atkins
chance for any kind of header compression. -derek -- Derek Atkins, Computer and Internet Security Consultant IHTFP Consulting (www.ihtfp.com) [EMAIL PROTECTED] - The Cryptography Mailing List

Re: PGP GPG compatibility

2002-01-20 Thread Derek Atkins
Templeton has been kicking around some ideas on how to make zero-UI encryption work (with some small UI available for us experts who care more about our privacy than the average joe). http://www.templetons.com/brad/crypt.html John -- Derek Atkins, SB '93 MIT EE, SM '95 MIT

Re: PGP GPG compatibility

2002-01-15 Thread Derek Atkins
by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED

Re: PGP GPG compatibility

2002-01-15 Thread Derek Atkins
use the freeware)? -- Will Will Price, Director of Engineering PGP Security, Inc. a division of Network Associates, Inc. -derek -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu

Re: CFP: PKI research workshop

2002-01-13 Thread Derek Atkins
year -derek -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED]PGP key available

Re: CFP: PKI research workshop

2002-01-02 Thread Derek Atkins
there. - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA

Re: FreeSWAN Release 1.93 ships!

2001-12-10 Thread Derek Atkins
] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED]PGP key available

Re: Scarfo keylogger, PGP

2001-10-16 Thread Derek Atkins
] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED]PGP key available

Re: New encryption technology closes WLAN security loopholes

2001-09-25 Thread Derek Atkins
). - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA

Re: moving Crypto?

2001-08-01 Thread Derek Atkins
by some publishers? I don't know why anyone would care that much about my opinion since I don't attend Crypto but I think Vancouver is a great location. Donald From: Derek Atkins [EMAIL PROTECTED] To: Richard Schroeppel [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] References: [EMAIL

Re: moving Crypto?

2001-07-31 Thread Derek Atkins
by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH [EMAIL PROTECTED]PGP key

Re: Company Awarded Patent for Digital Tickets (was Re: GigaLaw.com Daily News, July 30, 2001)

2001-07-31 Thread Derek Atkins
This also looks very similar to my Master's Thesis, where I even use the term digital ticket! Sheesh. -derek Peter Wayner [EMAIL PROTECTED] writes: I discuss this in both editiions of _Digital Cash_. I wonder if this is prior art that reads against the patent. -Peter -- Derek

Re: Crypto hardware

2001-07-12 Thread Derek Atkins
- The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED] -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB