<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Angels of security &#187; kaspersky</title>
	<atom:link href="http://angelsofsecurity.com/blog/tag/kaspersky/feed/" rel="self" type="application/rss+xml" />
	<link>http://angelsofsecurity.com/blog</link>
	<description>Musings of an infosec renegade</description>
	<lastBuildDate>Tue, 02 Aug 2011 19:01:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>1024 bit RSA key circumvented</title>
		<link>http://angelsofsecurity.com/blog/2008/06/18/1024-bit-rsa-key-circumvented/</link>
		<comments>http://angelsofsecurity.com/blog/2008/06/18/1024-bit-rsa-key-circumvented/#comments</comments>
		<pubDate>Thu, 19 Jun 2008 02:05:42 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[cryptography]]></category>
		<category><![CDATA[brute force]]></category>
		<category><![CDATA[kaspersky]]></category>
		<category><![CDATA[schneier]]></category>
		<category><![CDATA[shamir]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://angelsofsecurity.com/blog/2008/06/18/1024-bit-rsa-key-circumvented/</guid>
		<description><![CDATA[The gpcode virus has been making news of late. It&#8217;s ransom-ware that encrypted the infected machine&#8217;s files with a 1024 bit RSA key, demanding a monetary payment in exchange for the decryption key. Kaspersky labs announced that they would try to brute force the key if people would just loan them some spare CPU cycles. [...]]]></description>
			<content:encoded><![CDATA[<p>The gpcode virus has been making news of late. It&#8217;s <a href="http://en.wikipedia.org/wiki/Ransomware_%28malware%29">ransom-ware</a> that <a href="http://www.intology.com/computers-internet/ransomware-virus-that-uses-1024-bit-encryption-key/">encrypted the infected machine&#8217;s files with a 1024 bit RSA key</a>, demanding a monetary payment in exchange for the decryption key. Kaspersky labs announced that they would try to <a href="http://news.cnet.com/8301-10784_3-9965381-7.html">brute force the key </a>if people would just loan them some spare CPU cycles. They took some flak for even trying this, including a rebuke from the master cryptographer himself, <a href="http://www.schneier.com/blog/archives/2008/06/kaspersky_labs.html">Bruce Schneier</a>.</p>
<p>Now it appears they&#8217;ve found a solution. No, they haven&#8217;t cracked a 1024 bit RSA key this quickly, they&#8217;ve discovered that the <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9098338&amp;source=rss_topic17">files can be undeleted</a>, and released a utility to assist in the endeavor. This is another example of <a href="http://awards.acm.org/images/awards/140/vstream/2002/S/s-pp/shamir_1files_files/800x600/Slide8.html">Shamir&#8217;s third law of security</a>. For those of you who don&#8217;t know, Adi Shamir, recipient of the turing award and the S in RSA once delivered his 3 laws of security:</p>
<ol>
<li>Absolutely secure systems do not exist</li>
<li>To halve your vulnerability you need to double your expenditure</li>
<li>Cryptography is typically bypassed, not penetrated</li>
</ol>
<p>This is about as good an example of law number three as I can think of. Kaspersky would have found it nearly impossible to break the key in a meaningful amount of time, however circumventing the cryptography proved itself to be much easier.</p>
]]></content:encoded>
			<wfw:commentRss>http://angelsofsecurity.com/blog/2008/06/18/1024-bit-rsa-key-circumvented/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

