Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

2007-03-20

Inventory Spoofing: An Interesting RFID Exploit

According to
http://www.bof.nl/nieuwsbrief/nieuwsbrief_2006_16.html (in Dutch), Vrije Universiteit in Amsterdam, The Netherlands, has developed a prototype of a device capable of:
  • Detecting all RFID chips and scanners in its neighborhood
  • Keeping an inventory of all RFID chips you carry on your person, and alert you to new additions to the "inventory"
  • Block the reading of any RFID you carry
  • Spoof a given RFID
More details at http://www.rfidguardian.org/ (in English)

ACM Risks Digest

The Risks Digest is a moderated forum on risks to the public in computers and related systems, sponsored by the ACM. It's part of the ACM Committee on Computers and Public Policy.

2007-02-15

Windows App Install Permissions in Corporate Settings

I worked for more than a decade as a consultant in Fortune 100 settings. I remember well the difficulties one faces when installing even an innocuous application in Windows when you don't have admin (root) access. Martin McKay weighs in on the User Access Control in Vista, which, it seems, is not helping matters. I chime in with a reply on the CW blog page.