Zwei neue Forschungsprojekte der @Cyberagentur starten im Programm SCA4PQC. Sie zielen auf sichere Post-Quanten-Kryptographie – robust gegen physikalische Seitenkanalangriffe. Mit dabei: LEAP-CSP (Cloud & KI) und SPARTAQUS (Smartcards).
Mehr zur Zukunft der Kryptographie: https://t1p.de/gj3aa
#PostQuantum #Kryptographie #Seitenkanal #Cybersicherheit #Smartcards #CloudSecurity #Cyberagentur

Ich habe eine kurze bebilderte Anleitung geschrieben wie man mit #Kleopatra und #GnuPG #OpenPGP Schlüssel direkt auf #Smartcards wie #Yubikey #Token2 oder #Nitrokey erstellt

https://cryptomancer.de/posts/20251207-openpgp-smartcards/

GnuPG-Schlüssel mit Kleopatra auf Smartcards (Yubikey/Token2/Nitrokey etc) erzeugen

In dieser Anleitung wird ein OpenPGP direkt auf einer OpenPGP-Smartcard erzeugt. D.h. der Schlüssel existiert nur auf dieser Smartcard. Ein Backup existiert nicht und kann auch nicht erzeugt werden. Verliert man die Smartcard, ist auch der geheime Schlüssel verloren! Eine Anleitung zur Offline-Generierung von Schlüsseln und Upload auf mehrere Smardcards folgt noch. Erstellung von Schlüsseln direkt auf der Smartcard, ohne Backup! Ein geeignetes Schlüsselpaar erzeugen Tip Diese Schritte sind ein mal zur Erstellung eines neuen Schlüssels durchzuführen

CryptoMancer

@wolf480pl yeah, because the idea is that #drivers should hook in the #USB stack and unless it's a Universal Class Driver should just passthrough to the driver / userspace application for ease of support.

Online Multiplayer on the Game Boy

YouTube

who’s gonna tell the #Martians
why #Gazan lost kids weren’t on #cartons ?
slippery #WalkOns #grift for #argent
every time our #eyebrows arching
don’t let it touch the heartstrings
to get us to #SwipeAway as it hardens
#violent ardent khaki #sergeants
while we quake at #AlmondStalin
#GaryLineker ’s #PostPartum
pen over parchment starts to sharpen
I won’t make that bargain
I won’t beg that pardon
I be like “na man” gotta be barking
#PreciousIsEachFallenStarling
I’ll be the aveunt’s pesky #varmint
I’ll be #TestCase for their #retirement
I’ll be car-pooling up in the #parklands
opening the gates on #arkham
I’ll wipe out your margin
shave your #merkin
spice your #parkin
I’ll rehouse the martens
#TrainTheUrchins
spike your #garmin
I’ll be a #token doing a #slalom
round this #empire led by #Cartman
judged by duds like #MerrickGarland
none can thrive in this #environment
#censor tears of #Salah
lala to #Novara
if the bleeding party’s darker
#apathy #cicadas
while we eke they #parking
grasping for our farthing
all the #smartcards for the #outcasts marking
in this #awks #SharedDream hearken!
someone’s growing a fold: #Darkling
I don’t think we’ve time for #aksing
it’s got a bit beyond a #Marx ting
#DontSweat who’s inna room just barge in
tell them we need the #boats , we're not larking
#AllOfTheChildrenAreOurs when hurting
it’s part of our #dharma and we’re departing

7/7

#Bars
#Poetry
#Lyrics
#Songs
#writing
#rhymescheme
#geopol
#MiddleEast
#IsraeliWarCrimes
#FreedomFlotilla
#Sumud
#ConvoyOfSteadfastness
#FreePalestine
#Madleen
#AntiFascist
#Genocide
#UKpol
#Labour
#RuleOfLaw
#Atrocity
#Imperalism
#Collapse
#Ethics
#Society
#Praxis
#CallToAction
#WorldOrder
#SocialMovements
#Surveillance #State #SurveillanceState

#smartcards and #nuitka based project did not play nicely. No clue what went wrong, but I don't have free brain cycles to debug.

RFID cards could turn into a global security mess after discovery of hardware backdoor

Security researchers have discovered a backdoor in millions of RFID cards developed by Shanghai Fudan Microelectronics (FMSH). When properly exploited, this backdoor could be used to quickly clone contactless smart cards that regulate access to office buildings and hotel rooms worldwide.

#RFID #smartcards #securitybadges #security #cybersecurity #hackers #hacking

https://www.techspot.com/news/104436-previously-unknown-hardware-backdoors-could-turn-rfid-cards.html

RFID cards could turn into a global security mess after discovery of hardware backdoor

Security researchers at Quarkslab have discovered a backdoor in millions of RFID cards developed by Shanghai Fudan Microelectronics (FMSH). When properly exploited, this backdoor could be used...

TechSpot

Smart card printers are expensive! This is the cheapest one I can find, at 500 USD. Most of the other ones are over 1,000 USD.

https://www.idwholesaler.com/ips.html

#SmartCards #JavaCard #Printing

IDP IPS Smart-70 ID Card Printer Single-Sided - Configurable

Direct to card printingSingle-sided printingEthernet ConnectivityWarranty: 3 yearsFREE 1 Year TrueSupport with purchase of 3 or 4 year True Support Plan

Wow, de Palm III lang niet meer in handen gehad. Maar daar had deze spreker van Citi Smartcard authenticatie mee aan de gang. @nluug #vj2024 Conferentie keynote #nluug #smartcards

Is anyone else out there familiar with the "Visa Cash Cards" from the 1996 Olympics? I feel like they may have only been an Atlanta things. But I am not sure.

#SmartCards #Visa #Olympics #Atlanta

I'm looking for a good overview/comparison of different #MFA/#2FA or #PasswordLess authentication protocols.

The recent #Fido2 #MitM risk made me aware that I need to learn more.

Pointers and #BoostWelcome

#fedipower #wisdomOfTheCrowd #FollowerPower

As the best way to get an answer on the internet, is to state something wrong, let's try this 😜

#FIDO and FIDO2 are actually a whole set of (related?) protocols.
FIDO includes FIDO #UAF (Universal Authentication Framework) and FIDO #U2F (Universal Second Factor).

FIDO2 is the "successor" of FIDO and consists of two parts.
#WebAuthn and #CTAP (Client to Authenticator Protocol). From the name I would guess that WebAuthn is for web stuff (requiring browser support) and CTAP is for IT infrastructure stuff (???)

#Passkey is based on #Fido2
Other related concepts or protocols are #OTP (one-time passwords), #TOTP (Time-based One-time Password) and #HOTP (“H” in HOTP stands for Hash-based Message Authentication Code (HMAC))

Not sure how #SmartCards play into this.

And not sure which of these methods would work for an offline authentication login into your laptop (and ideally also as key for whole disk encryption)