Home News Forum Articles
  Welcome back Join CF
You are here You are here: Home | Forum | Encryption broken on some Flash Drives


You are currently viewing our boards as a guest which gives you limited access to view most of the discussions, articles and other free features. By joining our Virgin Media community you will have full access to all discussions, be able to view and post threads, communicate privately with other members (PM), respond to polls, upload your own images/photos, and access many other special features. Registration is fast, simple and absolutely free so please join our community today.


Welcome to Cable Forum
Go Back   Cable Forum > Computers & IT > Security & Virus Discussion

Encryption broken on some Flash Drives
Reply
 
Thread Tools
Old 07-01-2010, 09:09   #1
DaiNasty
Old dog, New tricks
 
DaiNasty's Avatar
 
Join Date: Dec 2006
Location: Lincoln UK
Age: 63
Services: 50Mb, TV & Phone
Posts: 3,511
DaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronze
DaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronzeDaiNasty is cast in bronze
Send a message via MSN to DaiNasty
Encryption broken on some Flash Drives

A word of warning to those of you who rely on hardware-based encrypted USB flash drives. Security firm SySS has reportedly cracked the AES 256-bit hardware-based encryption used on flash drives manufactured by Kingston, SanDisk and Verbatim.

The crack relies on a weakness so astoundingly bone-headed that it’s almost hard to believe. While the data on the drive is indeed encrypted using 256-bit crypto, there’s a huge failure in the authentication program. When the correct password is supplied by the user, the authentication program always send the same character string to the drive to decrypt the data no matter what the password used. What’s also staggering is that this character string is the same for Kingston, SanDisk and Verbatim USB flash drives.

http://blogs.zdnet.com/hardware/?p=6655&tag=nl.e589
__________________
-= David =-

Under socialism ideology always trumps rationality.
DaiNasty is offline   Reply With Quote
Advertisement
Old 07-01-2010, 09:36   #2
Raistlin
Been around a while ...
 
Raistlin's Avatar
 
Join Date: Feb 2004
Location: There's no place like 127.0.0.1
Services: Depends on the person and the price they're offering
Posts: 12,365
Raistlin has disabled reputation
Re: Encryption broken on some Flash Drives

Unbelievable.....
__________________
Citroen Xsara Owners Club
Raistlin is offline   Reply With Quote
Old 07-01-2010, 09:39   #3
Graham M
 
Graham M's Avatar
 
Join Date: Jul 2003
Location: Poole, Dorset
Age: 27
Services: Sky+ V-Box VM 10MBit
Posts: 12,927
Graham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny star
Graham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny starGraham M has a nice shiny star
Send a message via MSN to Graham M Send a message via Yahoo to Graham M
Re: Encryption broken on some Flash Drives

LoL what a load of rubbish
__________________
Desktop: Intel i7 SandyBridge 2600k 3.4GHz @ 4.7GHz - 8GB DDR3 - ATI Radeon HD 5770 1GB - OCZ Agility 3 60GB SSD Laptop: Dell Studio 15 - Intel i3 M350 @ 2.27GHz - 3GB DDR3 - ATI Radeon Mobility 4570
Graham M is offline   Reply With Quote
Old 16-01-2010, 00:39   #4
Waldo Pepper
cf.addict
 
Waldo Pepper's Avatar
 
Join Date: Jul 2009
Location: In the thick of East Anglia
Posts: 339
Waldo Pepper is just really niceWaldo Pepper is just really niceWaldo Pepper is just really niceWaldo Pepper is just really niceWaldo Pepper is just really niceWaldo Pepper is just really nice
Re: Encryption broken on some Flash Drives

Quote:
Originally Posted by Graham M View Post
LoL what a load of rubbish
A comment based on knowledge or more commonly - alcohol.?

I suggest you re-read and then re-post.
Waldo Pepper is offline   Reply With Quote
Old 16-01-2010, 07:37   #5
Mr_love_monkey
Anyone can play guitar
 
Mr_love_monkey's Avatar
 
Join Date: Jun 2003
Location: London way
Age: 36
Services: Women for money
Posts: 7,847
Mr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny stars
Mr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny starsMr_love_monkey has a pair of shiny stars
Send a message via Yahoo to Mr_love_monkey
Re: Encryption broken on some Flash Drives

Quote:
Originally Posted by Waldo Pepper View Post
A comment based on knowledge or more commonly - alcohol.?

I suggest you re-read and then re-post.
that's a a bit rude
__________________
Cheap Domain Name Registration
And this is not my face, and this is not my life
And there is not a single thing here I can recognize
And this is all a dream, and none of you are real
Mr_love_monkey is offline   Reply With Quote
Old 16-01-2010, 08:19   #6
Toto
cf.mega poster
 
Join Date: Dec 2004
Posts: 3,366
Toto has a bronzed appealToto has a bronzed appeal
Toto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appeal
Re: Encryption broken on some Flash Drives

Quote:
Originally Posted by Mr_love_monkey View Post
that's a a bit rude
LOL, yeh, and to a moderator also, I nearly spat out my tea.
__________________
Toto

http://www.cableforum.co.uk/board/image.php?u=6881&dateline=1172428039&type=sigpic
Toto is offline   Reply With Quote
Old 16-01-2010, 12:06   #7
haydnwalker
cf.mega poster
Tetris Champion
 
haydnwalker's Avatar
 
Join Date: Jan 2007
Location: Doncaster, S. Yorks.
Age: 28
Services: TV:Sky+, BB:DRL VDSL2 40/10 with Ask4, Phone:Mobile Only
Posts: 2,227
haydnwalker has reached the bronze age
haydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze agehaydnwalker has reached the bronze age
Re: Encryption broken on some Flash Drives

I read something similar on El Reg last week. But I thought it only affected Kingston Drives of particular types. We use some Kingston drives at work that are hardware encrypted so we've been in contact with them about it. Most of ours will be unaffected but we do have a few that might be and are being sent for replacements that will not be affected.

---------- Post added at 12:06 ---------- Previous post was at 12:05 ----------

Quote:
Originally Posted by Toto View Post
LOL, yeh, and to a moderator also, I nearly spat out my tea.
me too! Although, there is free speech to a point isn't there it was just an opinion Graham was expressing
__________________
"Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." - Albert Einstein

haydnwalker is offline   Reply With Quote
Old 16-01-2010, 12:55   #8
Raistlin
Been around a while ...
 
Raistlin's Avatar
 
Join Date: Feb 2004
Location: There's no place like 127.0.0.1
Services: Depends on the person and the price they're offering
Posts: 12,365
Raistlin has disabled reputation
Re: Encryption broken on some Flash Drives

Quote:
Originally Posted by haydnwalker View Post
[...]we do have a few that might be and are being sent for replacements that will not be affected.[...]


If you're sending them back drives with possibly faulty crypto implementations, and you've previously had data on them that you thought sensitive enough to be encrypted, I hope to God that you've properly sanitised them
__________________
Citroen Xsara Owners Club
Raistlin is offline   Reply With Quote
Old 16-01-2010, 13:25   #9
Toto
cf.mega poster
 
Join Date: Dec 2004
Posts: 3,366
Toto has a bronzed appealToto has a bronzed appeal
Toto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appealToto has a bronzed appeal
Re: Encryption broken on some Flash Drives

Quote:
Originally Posted by haydnwalker View Post
I read something similar on El Reg last week. But I thought it only affected Kingston Drives of particular types. We use some Kingston drives at work that are hardware encrypted so we've been in contact with them about it. Most of ours will be unaffected but we do have a few that might be and are being sent for replacements that will not be affected.

---------- Post added at 12:06 ---------- Previous post was at 12:05 ----------



me too! Although, there is free speech to a point isn't there it was just an opinion Graham was expressing
Yes indeed, but still, never wise to cloud the water is it.
__________________
Toto

http://www.cableforum.co.uk/board/image.php?u=6881&dateline=1172428039&type=sigpic
Toto is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Google Search




All times are GMT +1. The time now is 08:39.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
Copyright © 2003 - 2012, Cable Forum.
(server1.cableforum.co.uk)

SEO by vBSEO 3.3.2