Intrinsic Rowhammer PUFs: Leveraging the Rowhammer Effect for Improved Security
Using rowhammer DRAM mapping for PUF's, but that cuts both ways. Positive security ID also means it's a supercookie.
april 2018 by asteroza
ID4me – One ID for everything, everywhere
Dovecot makers are planning to extend IMAP to realtime chat, but need a federated ID backend using domain names. Looks like they will implement this through PowerDNS and this spec/group
march 2018 by asteroza
ZFS Volume Manipulation
Oh this is kinda important, migratiing ZFS zvols lose LU device ID if migrated to another pool. Use ZFS user defined property to keep a record of the ID with the zvol
february 2018 by asteroza
alizain/ulid: Universally Unique Lexicographically Sortable Identifier
Interesting alternative to UUID, fronted with a timestamp to allow some searching.
march 2017 by asteroza
LightCense | Visual Identification System for Drones / UASs
Some sort of light code (not quite morse if colors are involved) for broadcasting drone ID
july 2016 by asteroza
Watch That Windows Update: FTDI Drivers Are Killing Fake Chips
FTDI windows driver update bricks counterfeit chips. Which is okay, except most people have no idea they are using counterfeit chips, so let the bricking begin.
october 2014 by asteroza
Press Releases : DOCOMO Develops World's First SIM-based Authentication Mini Device
This isn't totally insane, as many countries are moving to electronic ID's using touchless access already. Moving some of the functionality to a bracelet that can be reused for SIM attributes is a reasonable extension of this concept. bluetooth fundamentally supports a remote SIM access profile, which is basically an extension of serial interface profiles already. Anything above SIM profile access though may be problematic without reusing an existing profile or standardizing a new one.
june 2014 by asteroza
SecureKey: Building Trusted Identity Networks
Apparently these guys have a deal with the USPS, to setup a cloud federated identity platform, so you can use bank website logins (or other identity providers deemed secure) to logon/verify identity with US federal websites. Sorta Fed OpenID?
january 2014 by asteroza
A Windows 2000-based, Windows Server 2003-based, or Windows XP-based computer that was set up by using a Windows 2000, Windows Server 2003, or Windows XP image does not appear in the WSUS console
So, normally, if you copy a VM without running NewSID or sysprep, you might have some issues (can't join DC properly, WSUS has ghost machines or doesn't recognize machines). This will fix the WSUS issue, due to duplicate ID's. The other option is sysprep using the OOBE and Generalize options, but that undoes a lot of settings/customizations which is obnoxious. But for Vista+ OS's, sysprep seems to be the only safe way to deal with SID resets since NewSID isn't safe.
october 2013 by asteroza
Future proof » Tim’s F6 driver guide
Only 3 brands of USB floppy are supported in Windows XP installs when needing a mass storage driver (demarcated in txtsetup.sif) so that HP USB Floppy Drive Key won't work. But if you modify the ISO by changing the txtsetup.sif to add additional hardware vendors, it should work. Though if you go to the trouble of modifying the ISO, you may as well slipstream patches and additional storage drivers from a driverpack.
august 2012 by asteroza
東京新聞:共通番号、15年1月に利用開始 政府、法案概要を決定:政治(TOKYO Web)
Japanese government is going to attempt a national number register for all citizens, and eventually force all interaction using this number, such as national pensions, national health care, and disaster relief. Naturally, such central consolidated information will allow the national government to keep tabs on anyone easily, rather than disappearing into the current prefectual and municipal systems. Since Jukinet went so well the first time around...
december 2011 by asteroza
Interesting attempt at an open global cell tower ID database, but fails for lack of an android app. OpenSignalMap is farther along due to that alone.
july 2011 by asteroza
National Strategy on Trusted Identities in Cyberspace
Your internet drivers license, courtesy of the Federal government and assorted big private players with lobbyists.
april 2011 by asteroza
iPhone App Review: Wallet Guide « Mobile in Japan
Simple app for storing photos and text information about your wallet contents. Useful when canceling credit cards when you lose your wallet. Though with the moves towards electronic ID cards (plus the underlying IC smartcards using java applets on the Javacard OS), it really wouldn't be hard to move the java applets onto the phone. It largely becomes an issue of installing a smartcard IC chip with several times the capacity (which are in production, just not common due to price), and handling the security of loading and authenticating/verifying the integrity of the applets as you use them with various services. One problem point is integrity verification. If you assume the phone must have power to use the smartcard, there's no energy/time/lag issue, but if you have to do it via power pickup during contactless use without onboard power, there may not be enough time to perform both the tamper check and the transaction (worst case is transit cards for train commuters).
march 2010 by asteroza
Samsung OLED RFID display
Damn it, there goes another patent I was preparing. Interesting potential alternative to holograms for authenticity checks. Using the reader's emitted power for the display is a good trick that keeps the size down.
january 2010 by asteroza
eMed-ID | Emergency Medical Information Devices
Looks a bit sleazy, considering it's going after both a captured audience and talks about franchise opportunities, but conceptually, it's a bridge service/concept. Having an easy to wear USB device that contains relevant medical and ID information on people who require extended medical services (the seriously sick, the infirm elderly, and the mentally weakening elderly) is a great idea, provided the information is both securable and easily accessible. Adding GPS/geofence services to catch alzheimer's escapees is a nice value-addin.
september 2009 by asteroza
All In The Name Of Security: The 'Killer Chip' Invention
Saudi arabian tries to patent in germany a remote monitoring RFID implant for human tracking, with optional remote poison release, ostensibly to provide incentive to foreign visitors to leave by the end of their visa. But other uses include controlling domestic undesirables and defectors. Not cool.
may 2009 by asteroza
Achtung, YouTube: Germany Proposes Federal ID Checks for Online Video Sites
Seems government officials may be angling to follow the South Korean model in an attempt to perform public safety and law enforcement functions on the internet regarding viral video, but going a step further to go after the mobbing viewers as well, rather than just going after the uploader, who is arguably the only responsible person to nail to a wall. Logging the viewers kills freedom of speech and freedom of association by design. Though some people have said this wouldn't work with existing data privacy laws in germany and the EU, so who knows, though even odds they'd just slip something in like the new EU logging regulations to make it all legal...
april 2009 by asteroza
pseudo LBS chance encounter dating service? " 'Toothing?"
february 2009 by asteroza
