Advertisement
Promo

Compliance Toolkit

Story: Police want power to seize encryption keys

  • Previous comment

Posted by: Arthur B. (Sunday 20 August 2006, 9:47 PM)

  • Reply

I believe some years ago some Israel scientists proved that PGP can be broken by means of some sort of brute force attack within 8 hours using about a 1000 common PC's or so. Now legally I can't own a botnet of that size (or any size) so I can't point out in public how wrong you are but you might want to rethink how secure any data is if someone with enough resources really wants to break it. Some might think that the police would have enough resources. At least more then most others.

As for forensics getting interested in a suspicious computer. I would advise to be far more interested in the communications eminating from that computer then the actual files on that computer. Reason being that there's no way of knowing what kind of tampering could have been done on that computer off-line while the same can't be said from the captured communications eminating from that computer if captured under the right (legal) circumstances.

Furthermore, there are tons of ways to hide data. The worst thing to do is to concentrate on anything that is within the control of the suspect (like the local computer). One needs to concentrate on anything that's (mostly) outside of the control of the suspect.

  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread


Video icon

Video

Cloud Watch Special Report

Five cloud computing myths exploded

Five cloud computing myths exploded

Analysis The cloud is providing a fertile habitat for the marketeers and their exaggerated claims. We examine the hokum and debunk the five most frequently peddled misconceptions about the cloud

More Special Reports

Sentry Posts Blog

Authentication risks all too human

Risks to successful online banking identification and authentication using smartcards involve a mixture of human and technological factors, according to the European Network and Information... More

1 comment

Opera censors Chinese content

Opera has updated the Chinese version of its mobile browser to stop users accessing restricted content. Opera Mini was updated on Friday from an international to a Chinese version,... More

2 comments

Symantec website breached

Security company Symantec has said that one of its websites was successfully breached. Romanian security researcher 'Unu' posted details of the breach in a blog post on Monday. Unu... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters