[K.Ellis guavaberry@earthlink.net] Boston Folks - public hearing Bill 2743

2003-04-01 Thread Perry E. Metzger
firewalls, among other things, illegal. snip On Fri, Mar 28, 2003 at 01:10:56PM -0500, Perry E. Metzger wrote: http://www.freedom-to-tinker.com/archives/000336.html Quoting: Here is one example of the far-reaching harmful effects of these bills. Both bills would flatly ban

Run a remailer, go to jail?

2003-03-28 Thread Perry E. Metzger
... the existence or place of origin or destination of any communication. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL

meet in the middle attacks

2003-03-26 Thread Perry E. Metzger
exchanged values and pre-shared conventional keys can prevent many such attacks. However, not attempting to prevent such attacks -- especially given that they are very effective -- seems foolish at best. -- Perry E. Metzger[EMAIL PROTECTED

yes, I know...

2003-03-26 Thread Perry E. Metzger
I meant Man in the Middle, not Meet in the Middle. Sigh. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED]

Supreme Court Refuses to Review Wiretaps Ruling

2003-03-24 Thread Perry E. Metzger
the Justice Department was the only party. Thus, it was not surprising that the Supreme Court declined today to review the lower courts' decision. http://www.nytimes.com/2003/03/24/politics/24CND-SCOT.html?ex=1049536949ei=1en=6cbee835b0f1acbe -- Perry E. Metzger[EMAIL PROTECTED

Khalid Sheikh Mohammed caught partially by Echelon?

2003-03-11 Thread Perry E. Metzger
The guardian reports (unsurprisingly) that Echelon was used in tracking Khalid Sheikh Mohammed's mobile phones: http://www.guardian.co.uk/alqaida/story/0,12469,911860,00.html -- Perry E. Metzger[EMAIL PROTECTED

ADMIN: acm.org subscribers in danger

2003-03-09 Thread Perry E. Metzger
. If I keep getting torrents of bounces, all the folks using acm.org mail redirectors (and there are dozens of you) will get removed from the list in a few days. Very sorry, but I just don't know what else to do. -- Perry E. Metzger[EMAIL PROTECTED

ADMIN: voting, etc...

2003-03-08 Thread Perry E. Metzger
I'm going to be ending the voting discussion now, at least for the moment, unless anyone has anything really interesting/new to say. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List

[Robert Moskowitz rgm-sec@htt-consult.com] Of potential interest -- Citibank tries to gag crypto bug disclosure

2003-02-20 Thread Perry E. Metzger
Forwarded from the SAAG list, where it was posted by Bob Moskowitz. To: [EMAIL PROTECTED] Subject: Citibank tries to gag crypto bug disclosure Date: Thu, 20 Feb 2003 09:57:34 + From: Ross Anderson [EMAIL PROTECTED] Citibank is trying to get an order in the High Court today gagging

Wireless network key management

2003-02-10 Thread Perry E. Metzger
your super-secret WEP key if you use WEP so there is no improvement in ease of configuration by using WEP. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe

Matt Blaze on locks at U Penn

2003-02-03 Thread Perry E. Metzger
Forwarded from Dave Farber's list: -- Dept. of Computer Information Science Colloquia Series 2003 is honored to present ... Matt Blaze ATT Labs. Thursday, February 6, 2003 3:00 p.m. - 4:30

Shamir factoring machine uninteresting?

2003-01-26 Thread Perry E. Metzger
I find it odd that there has been so little comment on TWIRL. One would think that the crushing of 512 bit RSA keys and a strong demonstration of the weakness of 1024 bit RSA keys would have provoked some comment on the list. Any comments on why no one commented? -- Perry E. Metzger

Open Source TCPA driver and white papers

2003-01-24 Thread Perry E. Metzger
From Dave Farber's list: From: David Safford [EMAIL PROTECTED] Subject: Open Source TCPA driver and white papers Date: Tue, 21 Jan 2003 12:05:39 -0500 Reply-To: David Safford [EMAIL PROTECTED] IBM has released a Linux device driver under GPL for its TCPA chip (TPM). The driver is available at

Fast factoring hardware

2003-01-24 Thread Perry E. Metzger
I got the following forwarded along yesterday from someone who'd had it forwarded along, apparently with reasonable permission along the chain. The message indicated the paper could be distributed, so I don't think I'm violating any trusts. Unfortunately the attached paper (which I'm still

ADMIN: Okay, no more DVD pricing and Pharma for now.

2003-01-10 Thread Perry E. Metzger
The discussion has been interesting but has gotten WAY out of the area of crypto politics per se. I'll be blocking that stuff unless it makes interesting new crypto or crypto politics points. -- Perry E. Metzger[EMAIL PROTECTED

Re: DeCSS, crypto, law, and economics

2003-01-09 Thread Perry E. Metzger
of these sheets actually say things like we can't be responsible for the effects, but if you were to push the following buttons in the following sequence... I am unaware of legal region-free players being generally available in the US, although I may be wrong on this. -- Perry E. Metzger

Re: DeCSS, crypto, law, and economics

2003-01-07 Thread Perry E. Metzger
later this evening I'll be watching an episode of I, Claudius I bought and paid for, using this criminal software combination. Hopefully no one will learn of my shamefully immoral act. Please don't tell anyone. -- Perry E. Metzger[EMAIL PROTECTED

[IP] Control freaks are winning the financial-privacy battle

2002-11-20 Thread Perry E. Metzger
From Dave Farber's Interesting People list. ---BeginMessage--- Dan Gillmor: Control freaks are winning the financial-privacy battle By Dan Gillmor Mercury News Technology Columnist News and views, culled and edited from my online eJournal (www.dangillmor.com): PRIVACY WRONGS The drive to kill

the volatile keyword

2002-11-07 Thread Perry E. Metzger
to accomplish here. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED]

Re: Did you *really* zeroize that key?

2002-11-06 Thread Perry E. Metzger
operating system requires volatile for purposes like writing device drivers. -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED]

German authorities bungle wiretaps.

2002-11-06 Thread Perry E. Metzger
/world/europe/2387269.stm -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED]

New Protection for 802.11

2002-11-06 Thread Perry E. Metzger
From Dave Farber's Interesting People list. Does anyone know details of the new proposed protocols? ---BeginMessage--- From: Dewayne Hendricks [EMAIL PROTECTED] Subject: [Dewayne-Net] New Protection for 802.11 To: Dewayne-Net Technology List [EMAIL PROTECTED] Date: Tue, 05 Nov 2002 13:17:54

NSA CELEBRATES ITS FIFTIETH ANNIVERSARY

2002-11-05 Thread Perry E. Metzger
From Dave Farber's Interesting People list. ---BeginMessage--- -- Forwarded Message From: Aftergood, Steven [EMAIL PROTECTED] Date: Mon, 04 Nov 2002 15:43:19 -0500 To: [EMAIL PROTECTED] Subject: Secrecy News -- 11/04/02 NSA CELEBRATES ITS FIFTIETH ANNIVERSARY The National Security

[IP] Former FBI chief takes on encryption

2002-10-16 Thread Perry E. Metzger
that the political reality after the Sept. 11 terrorist attacks means that it's time to reconsider what to do with encryption. ... http://news.com.com/2100-1023-961969.html -- End of Forwarded Message ---End Message--- -- Perry E. Metzger[EMAIL PROTECTED]

[Bruce Schneier schneier@counterpane.com] CRYPTO-GRAM, October 15, 2002

2002-10-15 Thread Perry E. Metzger
protect networks for Fortune 1000 companies world-wide. http://www.counterpane.com/ Copyright (c) 2002 by Counterpane Internet Security, Inc. ---End Message--- -- Perry E. Metzger[EMAIL PROTECTED]

open source CAs?

2002-10-09 Thread Perry E. Metzger
Beyond the openssl tools (which are quite primitive), are there any open source certificate authority tools out there at the moment that people can recommend? -- Perry E. Metzger[EMAIL PROTECTED

new copyright bill...

2002-10-04 Thread Perry E. Metzger
From NewsScan Daily: NEW COPYRIGHT BILL WOULD GIVE POWER TO THE PEOPLE Rep. Rick Boucher (D-Va.) and Rep. John Doolittle (R-Calif.) have introduced legislation aimed at restoring specific fair use rights to copy digital works that were lost under the 1998 Digital Millennium Copyright Act, as

Don Coppersmith questions Courtois and Pieprzyk AES results

2002-09-24 Thread Perry E. Metzger
Don Coppersmith questions Courtois and Pieprzyk AES results -- see: http://makeashorterlink.com/?K27C515E1 -- Perry E. Metzger[EMAIL PROTECTED] - The Cryptography Mailing List Unsubscribe by sending

[Werner Koch wk@gnupg.org] GnuPG 1.2 released

2002-09-24 Thread Perry E. Metzger
To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Subject: GnuPG 1.2 released From: Werner Koch [EMAIL PROTECTED] Mail-Followup-To: [EMAIL PROTECTED] Hello! We are pleased to announce the availability of a new stable release of GnuPG: Version 1.2.0 The GNU Privacy Guard (GnuPG) is GNU's tool

unforgeable optical tokens?

2002-09-20 Thread Perry E. Metzger
as silly as biometric authentication -- you can simply forge what the sensor is expecting even if you can't forge the token. Does anyone know any details about it? -- Perry E. Metzger[EMAIL PROTECTED

Re: Cryptogram: Palladium Only for DRM

2002-09-17 Thread Perry E. Metzger
It takes a lot for me to get cranky around here, but I'm afraid Aarg! has done it. AARG!Anonymous [EMAIL PROTECTED] writes: Perry Metzger writes: Why not simply design the OS so it is not a likely victim for viruses? This is a general security problem, not one special to banking

bluetooth cryptosystems

2002-09-17 Thread Perry E. Metzger
Does anyone have good pointers to papers on the security of E0 and the rest of the stuff used in bluetooth? It all looks very fragile. -- Perry E. Metzger[EMAIL PROTECTED] -- Ask not what your country can force other people to do for you

Quantum computers inch closer?

2002-08-17 Thread Perry E. Metzger
[I don't know what to make of this story. Anyone have information? --Perry] Quantum computer called possible with today's tech http://www.eet.com/story/OEG20020806S0030 MADISON, Wis. Researchers at the University of Wisconsin in Madison claim to have created the world's first successful

Re: employment market for applied cryptographers?

2002-08-16 Thread Perry E. Metzger
Adam Back [EMAIL PROTECTED] writes: Are there any more definitive security industry stats? Are applied crypto people suffering higher rates of unemployment than general application programmers? (From my statistically too small sample of acquaintances it might appear so.) Hard to say.

[aleph1@securityfocus.com] Implementation of Chosen-Ciphertext Attacks against PGP and GnuPG

2002-08-13 Thread Perry E. Metzger
in the OpenPGP standard to reduce the effectiveness of our attacks in these settings. http://www.counterpane.com/pgp-attack.pdf http://www.counterpane.com/pgp-attack.ps.zip -- Elias Levy Symantec Alea jacta est ---End Message--- -- Perry E. Metzger[EMAIL PROTECTED] -- Ask

ADMIN: No, I'm not dead...

2002-05-12 Thread Perry E. Metzger
I was away at a couple of trade shows and forgot to send a there will be some delays message before I left. The moderation backlog should start clearing later today. -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD: The right OS for your embedded design. http

Re: CFP: PKI research workshop

2001-12-26 Thread Perry E. Metzger
. -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development, Support CDs. http://www.wasabisystems.com/ - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography to [EMAIL PROTECTED]

Re: private-sector keystroke logger...

2001-11-27 Thread Perry E. Metzger
of it in things like tweaks to tcp timings or selections of tcp client port numbers or initial sequence numbers and such. Very hard to detect something like that with network sniffing. -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development, Support CDs. http://www.wasabisystems.com

passport hacked

2001-11-02 Thread Perry E. Metzger
Software Foundation. [...] -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development, Support CDs. http://www.wasabisystems.com/ - The Cryptography Mailing List Unsubscribe by sending unsubscribe cryptography

IP: Eisner privacy quote a hoax

2001-10-10 Thread Perry E. Metzger
From Interesting People: Date: Wed, 10 Oct 2001 12:06:07 -0700 Subject: Eisner privacy quote a hoax From: Fred von Lohmann (EFF) [EMAIL PROTECTED] The report regarding a secret meeting in DC where Eisner purportedly said Privacy laws are our biggest impediment to us obtaining our objectives

CDT Calls on Internet Activists to Urge Support for Feingold Amendments to Anti-Terrorism Bills

2001-10-10 Thread Perry E. Metzger
[EMAIL PROTECTED] http://www.cdt.org --- -- Perry E. Metzger[EMAIL PROTECTED] -- Ask not what your country can force other people to do for you... - The Cryptography Mailing List

Correction sought (`Secrets concealed by software' London Times)

2001-10-08 Thread Perry E. Metzger
From Dave Farber's list: From: Ross Anderson [EMAIL PROTECTED] To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Date: Mon, 08 Oct 2001 14:23:58 +0100 Subject: Correction sought The Editor, The Times, Dear Sir: In Friday's article, `Secrets concealed by software' [1], you quoted me as saying that

Re: Which internet services were used?

2001-09-15 Thread Perry E. Metzger
Eric [EMAIL PROTECTED] writes: [Moderator: I've listened to virtually all the news conferences made so far. The FBI has yet to make any such statement. In any case, however, why should we find this any more shocking or unfortunate than terrorism being plotted using telephones, or paper

The tragedy in NYC

2001-09-12 Thread Perry E. Metzger
responsible for this and bring them to justice. Pass no new laws. Take away no freedoms. Do not destroy the reason I live here to give me safety. I'd rather die in a terrorist attack. -- Perry E. Metzger[EMAIL PROTECTED] -- Ask not what your country can force other people to do for you

www.boycottadobe.com

2001-07-18 Thread Perry E. Metzger
It appears an Adobe boycott is in progress. See: http://www.boycottadobe.com/ -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development, Support CDs. http://www.wasabisystems.com/ - The Cryptography Mailing

Programmer arrested for Defcon talk?

2001-07-17 Thread Perry E. Metzger
knows real details, I'd appreciate them. -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development, Support CDs. http://www.wasabisystems.com/ - The Cryptography Mailing List Unsubscribe by sending unsubscribe

Programmer arrested

2001-07-17 Thread Perry E. Metzger
of the controversial Digital Millennium Copyright Act, (DMCA) which took effect last year and makes it a crime to manufacture products that circumvent copy protection safeguards. [...] --- End of forwarded message --- -- Perry E. Metzger[EMAIL PROTECTED] -- NetBSD Development