<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>aes &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/aes/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Wed, 12 Feb 2025 19:18:47 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>The importance of encryption and how AWS can help</title>
		<link>https://noise.getoto.net/2025/02/12/the-importance-of-encryption-and-how-aws-can-help/</link>
		
		<dc:creator><![CDATA[Ken Beer]]></dc:creator>
		<pubDate>Wed, 12 Feb 2025 19:18:47 +0000</pubDate>
				<category><![CDATA[aes]]></category>
		<category><![CDATA[AWS CloudHSM]]></category>
		<category><![CDATA[AWS Key Management Service*]]></category>
		<category><![CDATA[AWS KMS]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[Key management]]></category>
		<category><![CDATA[openssl]]></category>
		<category><![CDATA[s2n]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[TLS]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6b326a97a1de81e6d46682ccc3f86cb6</guid>

					<description><![CDATA[February 12, 2025: This post was republished to include new services and features that have launched since the original publication date of June 11, 2020. Encryption is a critical component of a defense-in-depth security strategy that uses multiple defensive mechanisms to protect workloads, data, and assets. As organizations look to innovate while building trust with […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Demo of AES GCM Misuse Problems</title>
		<link>https://noise.getoto.net/2024/06/14/demo-of-aes-gcm-misuse-problems/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Fri, 14 Jun 2024 11:05:35 +0000</pubDate>
				<category><![CDATA[aes]]></category>
		<category><![CDATA[algorithms]]></category>
		<category><![CDATA[cryptanalysis]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=69025</guid>

					<description><![CDATA[This is  really neat demo of the security problems arising from reusing nonces with a symmetric cipher in GCM mode.
]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Hyundai Uses Example Keys for Encryption System</title>
		<link>https://noise.getoto.net/2022/08/22/hyundai-uses-example-keys-for-encryption-system/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Mon, 22 Aug 2022 11:38:30 +0000</pubDate>
				<category><![CDATA[aes]]></category>
		<category><![CDATA[cars]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[keys]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=65794</guid>

					<description><![CDATA[<p>This is a <a href="https://www.theregister.com/2022/08/17/software_developer_cracks_hyundai_encryption/">dumb crypto mistake</a> I had not previously encountered:</p>
<blockquote><p>A developer says it was possible to run their own software on the car infotainment hardware after discovering the vehicle’s manufacturer had secured its system using keys that were not only publicly known but had been lifted from programming examples.</p>
<p>[…]</p>
<p>“Turns out the [AES] encryption key in that script is the first AES 128-bit CBC example key listed in the NIST document <a href="https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-38a.pdf">SP800-38A</a> [PDF]”.</p>
<p>[…]</p>
<p>Luck held out, in a way. “Greenluigi1” found within the firmware image the RSA public key used by the updater, and searched online for a portion of that key. The search results pointed to a common public key that shows up in online tutorials like “...</p></blockquote>]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Cryptanalysis of ENCSecurity’s Encryption Implementation</title>
		<link>https://noise.getoto.net/2022/06/13/cryptanalysis-of-encsecuritys-encryption-implementation/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Mon, 13 Jun 2022 11:48:14 +0000</pubDate>
				<category><![CDATA[aes]]></category>
		<category><![CDATA[cryptanalysis]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=65511</guid>

					<description><![CDATA[ENCSecurity markets a file encryption system, and it&#8217;s used by SanDisk, Sony, Lexar, and probably others. Despite it using AES as its algorithm, its implementation is flawed in multiple ways&#8212;and breakable.
The moral is, as it always is, tha...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Brexit Deal Mandates Old Insecure Crypto Algorithms</title>
		<link>https://noise.getoto.net/2020/12/31/brexit-deal-mandates-old-insecure-crypto-algorithms/</link>
		
		<dc:creator><![CDATA[Bruce Schneier]]></dc:creator>
		<pubDate>Thu, 31 Dec 2020 12:19:14 +0000</pubDate>
				<category><![CDATA[aes]]></category>
		<category><![CDATA[algorithms]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[e-mail]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[hashes]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[UK]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://www.schneier.com/?p=60696</guid>

					<description><![CDATA[<p>In what is surely an unthinking cut-and-paste issue, page 921 of the Brexit deal <a href="https://www.theverge.com/2020/12/29/22204624/brexit-eu-uk-netscape-communicator-4-crytography-email-data-dna-trade-deal">mandates</a> <a href="https://www.bbc.com/news/technology-55475433">the</a> use of SHA-1 and 1024-bit RSA:</p>
<blockquote><p>The open standard s/MIME as extension to de facto e-mail standard SMTP will be deployed to encrypt messages containing DNA profile information. The protocol s/MIME (V3) allows signed receipts, security labels, and secure mailing lists&#8230; The underlying certificate used by s/MIME mechanism has to be in compliance with X.509 standard&#8230;. The processing rules for s/MIME encryption operations&#8230; are as follows:</p>
<ol>
<li>the sequence of the operations is: first encryption and then signing,
...</li></ol></blockquote>]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 34/127 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-10 20:56:53 by W3 Total Cache
-->