Mehr zur Zukunft der Kryptographie: https://t1p.de/gj3aa
#PostQuantum #Kryptographie #Seitenkanal #Cybersicherheit #Smartcards #CloudSecurity #Cyberagentur
Ich habe eine kurze bebilderte Anleitung geschrieben wie man mit #Kleopatra und #GnuPG #OpenPGP Schlüssel direkt auf #Smartcards wie #Yubikey #Token2 oder #Nitrokey erstellt
In dieser Anleitung wird ein OpenPGP direkt auf einer OpenPGP-Smartcard erzeugt. D.h. der Schlüssel existiert nur auf dieser Smartcard. Ein Backup existiert nicht und kann auch nicht erzeugt werden. Verliert man die Smartcard, ist auch der geheime Schlüssel verloren! Eine Anleitung zur Offline-Generierung von Schlüsseln und Upload auf mehrere Smardcards folgt noch. Erstellung von Schlüsseln direkt auf der Smartcard, ohne Backup! Ein geeignetes Schlüsselpaar erzeugen Tip Diese Schritte sind ein mal zur Erstellung eines neuen Schlüssels durchzuführen
@wolf480pl yeah, because the idea is that #drivers should hook in the #USB stack and unless it's a Universal Class Driver should just passthrough to the driver / userspace application for ease of support.

who’s gonna tell the #Martians
why #Gazan lost kids weren’t on #cartons ?
slippery #WalkOns #grift for #argent
every time our #eyebrows arching
don’t let it touch the heartstrings
to get us to #SwipeAway as it hardens
#violent ardent khaki #sergeants
while we quake at #AlmondStalin
#GaryLineker ’s #PostPartum
pen over parchment starts to sharpen
I won’t make that bargain
I won’t beg that pardon
I be like “na man” gotta be barking
#PreciousIsEachFallenStarling
I’ll be the aveunt’s pesky #varmint
I’ll be #TestCase for their #retirement
I’ll be car-pooling up in the #parklands
opening the gates on #arkham
I’ll wipe out your margin
shave your #merkin
spice your #parkin
I’ll rehouse the martens
#TrainTheUrchins
spike your #garmin
I’ll be a #token doing a #slalom
round this #empire led by #Cartman
judged by duds like #MerrickGarland
none can thrive in this #environment
#censor tears of #Salah
lala to #Novara
if the bleeding party’s darker
#apathy #cicadas
while we eke they #parking
grasping for our farthing
all the #smartcards for the #outcasts marking
in this #awks #SharedDream hearken!
someone’s growing a fold: #Darkling
I don’t think we’ve time for #aksing
it’s got a bit beyond a #Marx ting
#DontSweat who’s inna room just barge in
tell them we need the #boats , we're not larking
#AllOfTheChildrenAreOurs when hurting
it’s part of our #dharma and we’re departing
7/7
#Bars
#Poetry
#Lyrics
#Songs
#writing
#rhymescheme
#geopol
#MiddleEast
#IsraeliWarCrimes
#FreedomFlotilla
#Sumud
#ConvoyOfSteadfastness
#FreePalestine
#Madleen
#AntiFascist
#Genocide
#UKpol
#Labour
#RuleOfLaw
#Atrocity
#Imperalism
#Collapse
#Ethics
#Society
#Praxis
#CallToAction
#WorldOrder
#SocialMovements
#Surveillance #State #SurveillanceState
RFID cards could turn into a global security mess after discovery of hardware backdoor
Security researchers have discovered a backdoor in millions of RFID cards developed by Shanghai Fudan Microelectronics (FMSH). When properly exploited, this backdoor could be used to quickly clone contactless smart cards that regulate access to office buildings and hotel rooms worldwide.
#RFID #smartcards #securitybadges #security #cybersecurity #hackers #hacking
Smart card printers are expensive! This is the cheapest one I can find, at 500 USD. Most of the other ones are over 1,000 USD.
Is anyone else out there familiar with the "Visa Cash Cards" from the 1996 Olympics? I feel like they may have only been an Atlanta things. But I am not sure.
I'm looking for a good overview/comparison of different #MFA/#2FA or #PasswordLess authentication protocols.
The recent #Fido2 #MitM risk made me aware that I need to learn more.
Pointers and #BoostWelcome
#fedipower #wisdomOfTheCrowd #FollowerPower
As the best way to get an answer on the internet, is to state something wrong, let's try this 😜
#FIDO and FIDO2 are actually a whole set of (related?) protocols.
FIDO includes FIDO #UAF (Universal Authentication Framework) and FIDO #U2F (Universal Second Factor).
FIDO2 is the "successor" of FIDO and consists of two parts.
#WebAuthn and #CTAP (Client to Authenticator Protocol). From the name I would guess that WebAuthn is for web stuff (requiring browser support) and CTAP is for IT infrastructure stuff (???)
#Passkey is based on #Fido2
Other related concepts or protocols are #OTP (one-time passwords), #TOTP (Time-based One-time Password) and #HOTP (“H” in HOTP stands for Hash-based Message Authentication Code (HMAC))
Not sure how #SmartCards play into this.
And not sure which of these methods would work for an offline authentication login into your laptop (and ideally also as key for whole disk encryption)