Search results for “site:schneier.com”

Page 5 of about 65 results

schneier.com tag › applied-cryptography

Applied Cryptography Archives - Schneier on Security

Through a 2010 FOIA request (yes, it took that long), we have copies of the NSA’s KRYPTOS Society Newsletter, “Tales of the Krypt,” from 1994 to 2003. There are many interesting things in the 800 pages of newsletter. There are many redactions. And a 1994 review of Applied Cryptography by redacted...

schneier.com blog › about › bio

50- and 100-Word Biographies - Schneier on Security

100 Words Bruce Schneier is an internationally renowned security technologist, called a “security guru” by The Economist. He is the author of over one dozen books—including his latest, Rewiring Democracy—as well as hundreds of articles and...

schneier.com blog › archives › 2008 › 10

How to Write Injection-Proof SQL - Schneier on Security

It’s about time someone wrote this paper: ABSTRACT Googling for “SQL injection” gets about 4 million hits. The topic excites interest and superstitious fear. This whitepaper dymystifies the topic and explains a straightforward approach to...

schneier.com blog › archives › 2008 › 10

Designing a Malicious Processor - Schneier on Security

From the LEET ’08 conference: “Designing and implementing malicious hardware,” by Samuel T. King, Joseph Tucek, Anthony Cozzie, Chris Grier, Weihang Jiang, and Yuanyuan Zhou. Abstract: Hidden malicious circuits provide an attacker with a...

schneier.com blog › archives › 2010 › 10

Pen-and-Paper SQL Injection Attack Against Swedish Election - Schneier on Security

Some copycat imitated this xkcd cartoon in Sweden, hand writing an SQL injection attack onto a paper ballot. Even though the ballot was manually entered into the vote database, the attack (and the various other hijinks) failed. This time. Three news links, in Swedish.

schneier.com essays › archives › 2007 › 01

In Praise of Security Theater - Schneier on Security

Portuguese translation While visiting some friends and their new baby in the hospital last week, I noticed an interesting bit of security. To prevent infant abduction, all babies had RFID tags attached to their ankles by a bracelet. There...

schneier.com essays › archives › 2009 › 01

Terrorists May Use Google Earth, But Fear Is No Reason to Ban It - Schneier on Security

This essay also appeared in The Hindu, Brisbane Times, and The Sydney Morning Herald. German translation It regularly comes as a surprise to people that our own infrastructure can be used against us. And in the wake of terrorist attacks or...

schneier.com blog › archives › 2024 › 06

New Blog Moderation Policy - Schneier on Security

There has been a lot of toxicity in the comments section of this blog. Recently, we’re having to delete more and more comments. Not just spam and off-topic comments, but also sniping and personal attacks. It’s gotten so bad that I need to...

schneier.com blog › archives › 2024 › 09

SQL Injection Attack on Airport Security - Schneier on Security

Interesting vulnerability: …a special lane at airport security called Known Crewmember (KCM). KCM is a TSA program that allows pilots and flight attendants to bypass security screening, even when flying on domestic personal trips. The KCM...

Try “site:schneier.com” on: Marginalia · Mojeek · Wiby · DuckDuckGo · Bing · Google · Wikipedia · Internet Archive