techkenyot.com
techkenyot.com January 18, 2019


New encryption vulnerability means email is no longer secure

14 May 2018, 06:15 | Edward Lowe

EnlargeElsamuko

EnlargeElsamuko

The researchers have already contacted email service providers through the Electronic Frontier Foundation.

A more detailed explanation and analysis will be forthcoming once the research is formally released tomorrow, but the vulnerabilities are thought to affect both PGP and the S/MIME public key encryption standard.

Professor Sebastian Schinzel took to Twitter with the news early on Monday, European time.

He said the vulnerabilities "might reveal the plaintext of encrypted emails, including encrypted emails sent in the past" and that there are no current fixes available.

Karnataka elections: BJP, Congress confident of win, reject possibility of hung assembly
My government is committed to the upliftment of the scheduled castes and scheduled tribes, " he had said. Siddaramaiah , who was once a key JD (S) leader, was sacked by the former prime minister in 2005.

EFF said in a blog post that users should uninstall PGP until the flaw is patched.

Attackers who exploit the vulnerability are able to change an encrypted email in a certain way and send then send the altered encrypted email to the victim.

Another way would be to use authenticated encryption via tools such as OpenPGP, he argued. Because a full block of plaintext-the researchers cite S/MIME emails starting with "Content-type: multipart/signed" as one-is known to the attacker, this allows the attacker to "repeatedly [append] CBC gadgets to inject an image tag into the encrypted plaintext".

PGP is often used to encrypt messages in popular email programs such as Outlook, Apple Mail, Thunderbird, and Enigmail.

Asteroid larger than a Football Field will be near by Earth Experience
Astronomers think that in spite of its dimension as well as range to Earth, 2010 WC9 will securely zoom past the planet. The space rock - dubbed Asteroid 2010 WC9 - will pass by the planet at around half the moon's distance on Tuesday.

Though researchers are warning users of the seriousness of the vulnerability, many believe it is being hyped too much.

In a tweet, Koch said the vulnerability is primarily in the email clients and not in the protocols. In the meantime, they are recommending that users stop using OpenPGP and S/MIME for now.

Of course, if you recognise the need to secure encrypt your communications you probably also understand that resorting to sending and receiving unencrypted email is far from an acceptable solution.

However, to address this risk, experts have come up with a chip that uses ionic memristor technology to address security concerns. According to the researchers, the said technology can be seen as an electrical resistance switch, which can "remember" its state of resistance due to the history of applied voltage and current.

CBI to chargesheet Modi, Allahabad Bank CEO in its first chargesheet
These credit limits were provided to Modi's firms - Firestar International Limited and Firestar Diamonds International Limited - between 2013 and 2017.



Other News

Trending Now

BHP Billiton Limited (BHP) Shares Bought by Associated Banc Corp
Deutsche Bank cut shares of BHP Billiton from a "buy" rating to a "hold" rating in a research note on Wednesday, February 21st. On Friday, May 4 the stock of BHP Billiton Limited (NYSE:BHP) has "Overweight" rating given by Barclays Capital.

Italy's M5S and League parties poised to name a prime minister
The two parties were set to present their "government of change" to Mattarella on Monday instead. Outside the presidential palace in Rome.

Armenian PM expects relations with Russian Federation to improve
The post of Deputy Prime Minister of the Republic approved by the Chairman of the Board of Armenian "Ardshinbank" Mher Grigoryan, reports news Agency "Interfax".

IPL 2018: Rajasthan Royals Defeat the Mumbai Indians
He conceded only 16 runs from his four overs and dismissed Lewis and Suryakumar and Rohit Sharma (0) in successive balls. The fluffed chances allowed Mumbai Indians to come out of Power-play overs unscathed and with 51 runs on the board.

Mercedes-AMG GT S Roadster revealed
In the standard model, this produces 469 hp and 465 lb-ft of torque, while the C version ups the ante to 550 hp and 502 lb-ft. Mercedes-AMG is already taking orders for the new GT S Roadster , with the market launch scheduled for July 2018.

Iraq PM says to impose security in Kirkuk after riots
Sadr's father, highly respected Grand Ayatollah Mohammed Sadeq al-Sadr, was murdered in 1999 for defying Saddam Hussein. Parliament must approve the government programme and each individual minister in separate absolute majority votes.

United States sanctions 'possible' on European firms over Iran: Bolton
Germany said it would spend the next few months trying to persuade Washington to change its mind. Imports totalled $6.8 million, with dates contributing over half.

North Carolina's bishop Curry to preach homily at royal wedding ceremony
That said, Welby had nothing but nice words to say about Curry when the announcement of his inclusion was made. Prince Harry and Meghan Markles relationship is transatlantic, and now their wedding ceremony will be too.

Actress says change has 'already happened' after Cannes red carpet protest
Hayek said Weinstein specifically contested her claim and that of Lupita Nyong'o because they're women of color. It is a proven fact unfortunately. "We should have come together, because that's what's made a difference".

SolarEdge Technologies (NASDAQ:SEDG) Was Downgraded From "Market Outperform" By JMP Securities
Relative volume is the comparison of current volume to average volume for the same time of day, and it's displayed as a ratio. The average 12 month price objective among brokerages that have issued a report on the stock in the previous year is $50.58.