Trapdoor commitments in the SwissPost e-voting shuffle proof
So that SwissPost/Scytl voting system that looked like a hot mess according to various infosec twitter hot takes, turns out to be a hot mess...
march 2019 by asteroza
Now this is interesting! Android might be able to output carrier phase angle and other raw GNSS data. This is the basis for cyberlocator, the location security concept that used raw GPS signal variance to confirm location relative to a datacenter GPS receiver (intended for determining is someone was actually in the same region as a datacenter)
september 2018 by asteroza
Chronicle Security - Homepage
Trying to operate cybersecurity more like an immune system, but first we need to hoover all that data into google for the machine learning...
july 2018 by asteroza
👼Ąż杏 on Twitter: "TIL about "摇步器" - a swinging cradle to fake step motions for your smartphone. aka "gaming a system, illustrated"… "
For cheating at the "10K steps a day" tracking for improved social credit scores in china. Apparently some of the insurance companies are providing them as well?
may 2018 by asteroza
Vortex Dehyration System
Can crush/separate to micron size rock and concrete, can dry/powderize animal waste, and can desalinate seawater if you have hot inputs
october 2017 by asteroza
Announcing Linkerd 1.0
API proxy with service discovery that also runs as a service message bus, could for kubernetes cloud deployments where your instance fleet is pretty dynamic. Adds another layer so you can dynamically route and grab analytics.
april 2017 by asteroza
DigiTally - Computer Laboratory
Using overlay SIM functionality to operate a pseudo-offline transaction system for mobile payments using dumbphones.
march 2017 by asteroza
Taskbar - Android Apps on Google Play
This can enable freeform floating windows for apps (best for tablets with screen space)
september 2016 by asteroza
Step Change in Security with Modern Devices and Architecture | Windows for IT Pr...
Interesting move towards locking down some functions in a system/supervisor container. Like Qubes...
july 2016 by asteroza
Mobingi - Cloud Application Lifecycle Management and Automation
combo of docker container deployment PaaS and an effective spot instance bidder to reduce your cloud costs
may 2016 by asteroza
How to establish and boot to GPT mirrors on 64-bit Windows
You can do a boot mirror with windows software raid, but you must manually copy the EFI partition information or you will just copy the system data but not the boot loader, making you look stupid if the primary disk fails.
march 2016 by asteroza
SCADAPASS/scadapass.csv at master · scadastrangelove/SCADAPASS
Haha, oh wow. Now couple this with Shodan then watch the firewworks. I'm gonna need a bigger popcorn bucket...
january 2016 by asteroza
When pivoting to a looting/pillaging stage, this is handy...
november 2015 by asteroza
Brochures - Whitepapers
Interesting set of whitepapers by United Laboratories detailed transaction security for touchless payments and their variations (mostly NFC)
september 2014 by asteroza
Internet scanning obvious big vulnerabilities so you don't have to. Sorta like SHODAN. Also, naming and shaming sites too. Wonder if they use Masscan?
june 2014 by asteroza
Apparently somewhat similar to The Dude...
may 2014 by asteroza
Tries to force a full disk encryption laptop into hibernation to try to purge encryption keys from RAM before someone tries to do a DMA or cold boot attack to retrieve keys, provided a power or network state change event can be reliably detected...
may 2014 by asteroza
Android KitKat | Android Developers
HCE is an end run around cellphone carriers excessively controlling the SE (secure element) portion of NFC, effectively locking out competitors in the contactless mobile payments space. But now Visa/MasterCard have announced HCE support for cloud storage of credit cards, effectively breaking the carrier stranglehold and opening the way for more Google Wallet like services..
march 2014 by asteroza
