Tag: authentication

  • There is a place for unauthenticated key exchange, but don’t tell anyone

    Making dragnet surveillance harder justifies using weak form of encryption. Discussions on how to make the Internet more secure have been going on ever since the first two computers were connected. Recently, however, Snowden’s revelations about surveillance on a scale that was hitherto only imagined by the most paranoid have made some of these discussions…

  • Rogue Twitter application steals passwords

    ‘See who stalks my Twitter’ used to lure users. A malicious Twitter application is currently spreading on the microblogging network, luring users to hand over their passwords, supposedly so they can see who is ‘stalking’ them on the site. At first glance, the page where the application (dubbed ‘StalkTrak’) asks to be authorized may look…

  • Zitmo trojan for Android defeats two-factor authentication

    Malware intercepts TANs sent via SMS. A new variant of the Zitmo trojan has been discovered that infects mobile devices running the Android platform and which intercepts SMS messages from banks sending mobile TAN numbers, thus potentially defeating two-factor authentication. Two-factor authentication is used by many banks to prevent a customer’s online banking account being…