Interesting links
Submitted by dmt on Fri, 2008-08-29 12:54
Most of these are via Slashdot.
- How to create a BGP man in the middle attack [PDF]
- A description of the DNS system and the Kaminsky DNS vulnerability
- A description of the GMail session ID theft vulnerability
- The MicroID email hashing used by many Web session management systems can be broken
- A series on commercial cybercrime support websites from the Washington Post's Security Fix blog:
- What it looks like to be infected by a rootkit
- "Tracing optimization" makes Javascript run faster
- CIO Magazine on the current state of scripting languages
- Compile C to Java bytecode with NestedVM [PDF]
- How the Portal portaling code works
- A description of Intel's upcoming Nehalem architecture
- Giving Linux the features of Microsoft's Genuine Advantage


THanks
Thanks for the link. I find the GMail session ID theft vulnerability particularly useful as I got lured in using Gmail. However, I'm now paranoid that as I'm typing this and doing "always use https" option, some hijacker may have taken over my account. :(