Szilárd Pfeiffer
@pfeifferszilard
A free software fanatic developer, security committed engineer, free-culture enthusiastic journalist, agile believer manager.
Opinions are my own.
ID: 103249139
http://www.pfeifferszilard.hu 09-01-2010 11:26:35
547 Tweet
105 Takipçi
164 Takip Edilen
Yet another blog post of mine about Zero Trust. Thanks to Cyber Tech Accord for supporting the #ZeroTrust movement. It was a pleasure to write about one of my favorite topics in #infosecurity Strong Authentication. #infosec #CyberSecMonth #CyberSecurityMonth
Now CryptoLyzer can analyze #SSH certificates (not X.519), not just SSH host keys, which is a unique feature. For more details about SSH certificates, read OpenSSH project cookbook on Wikibooks en.wikibooks.org/wiki/OpenSSH/C… #infosecurity #ITSec #infosec #Audit
My second #CVE ID from MITRE. It is again about the key exchange protocol of #cryptography giants Whitfield Diffie, Martin Hellman, and Ralph Merkle. It has again 7.5 base score. Many thanks again to #Balasys for the support! #CyberSecurity #infosec #infosecurity #CyberSec
The next episode of the #PQC vs. #RSA series seems to be here. Submitting to the attention of Schneier Blog, Peter Shor.
Version 0.9.1 of #CryptoLyzer has already been released with a Certificate Transparency log description for #X509 certificate of servers using #TLS. Many thanks to NLnet Foundation @[email protected] and NGI Assure for their support. #infosec #infosecurity #CyberSec #audits #hackingtools #cybersecurity
Thanks to NLnet Foundation @[email protected] and @NGIassur version 0.10.2 of #CryptoLyzer had been released with mail-related DNS record (#MX, #SPF, #DMARC, MTA-STS, TLSRPT) parsing support. cryptolyzer.readthedocs.io/en/latest/chan… #infosec #infosecurity #CyberSec #audits #hackingtools #cybersecurity
Thanks to NLnet Foundation @[email protected]/@NGIassur version 0.11.0 of #CryptoLyzer had been released. CLI output is now colorized based on the security strength of the algorithms and key sizes used by the server. cryptolyzer.readthedocs.io/en/latest/chan… #infosecurity #cybersec #audits #hackingtools #cybersecurity
Thanks to @NLnetFD version 0.11.2 of #CryptoLyzer had been released with #HTTP subresource integrity and unencrypted content checker. #TLS client simulation provides a grade for #KEX sizes. cryptolyzer.readthedocs.io/en/latest/chan… #infosecurity #cybersec #audits #hackingtools #cybersecurity
My first, but hopefully not the last paper on IEEE Access! With Norbert Tihanyi, PhD we discussed my earlier CVEs about #DHEat, a #DoS attack against the KEX algo of Whitfield Diffie + Martin Hellman, heroes of #cryptography. ieeexplore.ieee.org/document/10374… #cybersecurity #redteam #offsec