[e-privacy] cryptoloop bug

putro putro at autistici.org
Sun May 29 21:06:35 CEST 2005


http://packetstormsecurity.org/filedesc/cryptoloop_exploit.tar.html

Demonstration of vulnerabilities in Linux's cryptoloop encrypted file
system support. Cryptoloop is vulnerable to watermarking, where you can
determine whether or not a known watermarked file is present within an
encrypted filesystem, even with the key(s) for that filesystem.


non l'ho ancora testato, ma nella homepage linkata dalla pagina
su packetstorm il tizio dice che la stessa vulnerabilita' vale anche per
dmcrypt,  nei prossimi giorni provero' a fare due prove.


-- 
.
ciao

GPG/PGP key available on keyservers


Il diavolo e' molto piu' interessante di cristo. (Bukowski)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://lists.winstonsmith.org/pipermail/e-privacy/attachments/20050529/9908e2c0/attachment.pgp>


More information about the E-privacy mailing list