Category Archives: Security Research

Reduction of False Positive Intrusions by using Neural Nets

Paper Reduction of False Positive Intrusions by using Neural Nets, which I worked on with colleagues, is now available at IEEE Digital Library. Abstract The main idea of this paper is to propose a new solution for a Wireless Intrusion … Continue reading

Share
Posted in Books, Magazines and Journals, Intrusion Detection / Prevention Systems, Security Research | Tagged , , , , , , , , , , , | 3 Comments

Tighter Visa Restrictions Dramatically Decreased Research Capability in USA

Foreign-born researchers are significant contributors to U.S. science and technology endeavors.  In fact, between 1990 and 2004, more than one-third of all Nobel prizes in the United States have gone to foreign-born recipients.  The success of many U.S. universities and … Continue reading

Share
Posted in General, Security, Security Research | Tagged , , , , , , , , , | Leave a comment

Security and Prediction Markets – Try It Here

Prediction markets are speculative markets created for the purpose of making predictions. Assets are created whose final cash value is tied to a particular event (e.g., will the next US president be a Republican) or parameter (e.g., total sales next … Continue reading

Share
Posted in Security Research | Tagged , , , , , , , | Leave a comment

Thoughts on Threat Modeling

An excellent series of blog posts by Microsoft’s Larry Osterman about threat modeling with links to all 13 posts is here. Someone who signed comment as Bill Gates (it might be real Bill?) wrote: Larry, keep up the good work, I … Continue reading

Share
Posted in Security Research, Threats, Vulnerabilities, Attacks | Tagged , , , , , | Leave a comment

Mathematicians and Cryptographers

Neal Koblitz published paper “The Uneasy Relationship Between Mathematics and Cryptography” at Notices of the American Mathematical Society. This article has been commented on Bruce Schneier’s blog on security and rebuttals came from Oded Goldreich, Hugo Krawczyk, Jonathan Katz, Luca … Continue reading

Share
Posted in Cryptography, Security Research | Tagged , , , , , , , , , | Leave a comment

8th IEEE International Conference – TELSIKS 2007

8th IEEE International Conference – TELSIKS 2007 will take place from September 26 – 28, 2007 in Nis, Serbia. Visit conference site here. Paper titled “Reduction of False Positive Intrusions by Using Neural Nets” which I worked on with couple … Continue reading

Share
Posted in Conferences, Events, Intrusion Detection / Prevention Systems, Security Research | Leave a comment

Ophcrack – Rainbow Tables Based Password Cracker

If you think your passwords are strong enough, think twice. They are probably not. Ophcrack is a Windows password cracker based on rainbow tables. It is a very efficient implementation of rainbow tables done by the inventors of the method. It comes with … Continue reading

Share
Posted in Operating Systems and Application Security, Security Research, Software Security, Tools and Utilities | Leave a comment

Credit Card Fraud Detection using Hidden Markov Model

Interesting mechanism for detecting credit card fraud using hidden Markov model is described in IEEE Transactions on Dependable and Secure Computing, September 2007, (here). In conclusion, it says: In this paper, we have proposed an application of Hidden Markov Model … Continue reading

Share
Posted in Security Research | 18 Comments

A/V Research on Detecting File Infections Was a Waste Time?

This is really interesting reading: invisiblethings’ blog: Tricky Tricks. Joanna Rutkowska says: … So, do I want to say that all those years of A/V research on detecting file infections was a waste time? I’m afraid that is exactly what … Continue reading

Share
Posted in Malicious Software, Security Research | Leave a comment

The Ethics of Perfection

Interesting blog post from Steve Lipner: The Security Development Lifecycle : The Ethics of Perfection. He says in conclusion: What does all this have to do with ethics?  Well, I think that given the choice between shipping perfectly secure software (whatever … Continue reading

Share
Posted in Security Research, Software Security | Leave a comment