Browse by Tags

All Tags » General Security » Alun's code (RSS)

Shared accounts got you down?

Here’s a description of a tool I’ve been itching to release for some time now - “2ndAuth”, short for “secondary authentication”. This is how it works: 1. The user logs on using a shared account – an account that is known to be shared by a number of different...

FTP - Untrustworthy? I Don't Think So!

Lately, as if writers all draw from the same shrinking paddling-pool of ideas, I've noticed a batch of stories about how unsafe, unsecure and untrustworthy is FTP. SC Magazine says so. First it was an article in the print version of SC Magazine ,...

Searching for Weak Debian / Ubuntu SSL Certificates

I've seen a number of people promote packages that have shipped for Debian and Ubuntu, which allow users to scan their collected keys - OpenSSH or OpenSSL or OpenVPN, to discover whether they're too weak to be of any functional use. [See my earlier...

Wireless PC Lock - part 2

Over the last several days, I've been getting more and more requests for my updated Wireless PC Lock software that I described way back last year . Possibly, it's because of stories like this one : At New York-based Big Four accounting firm Ernst...