Microsoft Encourages Testing of New IoT Security Paradigm

Security is a top concern for the Internet of Things, in particular when large numbers of IoT devices are deployed in an organization. There’s been a rise in attacks on such devices, via botnets, and a search engine, Shodan, is dedicated to finding unsecured IoT hardware endpoints. In that context, Microsoft, which is updating its Azure IoT toolset, is also testing a new approach to securing and managing such devices. Dubbed Project Sopris, Microsoft Research hopes to mix secure hardware and a secure communications channel. Continue reading Microsoft Encourages Testing of New IoT Security Paradigm

Signal App Update Adds Ability to Make Encrypted Video Calls

The Signal app from non-profit Open Whisper Systems provides end-to-end encrypted messaging, voice calling, and now video chatting. The new feature, along with improved voice calling functionality, comes as part of a beta update for the app’s Android and iOS versions. Signal is a popular choice for activists and journalists who need a private communications platform, but it is still struggling to find a foothold in the mainstream because it sacrifices some popular features for security.  Continue reading Signal App Update Adds Ability to Make Encrypted Video Calls

Newly Published Google Overview Spells Out Security Details

In a recently published Infrastructure Security Design Overview, Google explains its six layers of security for the cloud it uses for its own operations and its public cloud services. The company also revealed that it designs custom chips, “including a hardware security chip that is currently being deployed on both servers and peripherals,” that allow it to “securely identify and authenticate legitimate Google devices at the hardware level.” The chip works with cryptographic signatures validated during each boot or update. Continue reading Newly Published Google Overview Spells Out Security Details

Google Key Transparency Project to Boost Messaging Security

To improve encryption, Google has launched an open source project, Key Transparency, a follow-up to its Certificate Transparency, both of which focus on the need to verify the authenticity of the person or server the user believes he is connecting to. Keybase, a collection of verified users and their “cryptographic credentials” is one solution, but Google now wants to ascertain that the contacts are verified systematically and are privacy-protected, by having the address “double-check” itself. Continue reading Google Key Transparency Project to Boost Messaging Security

Harder to Trace Than Bitcoin, Zcash Virtual Currency Debuts

Zcash is the latest in virtual currency, designed by academics with advanced cryptography to be untraceable. After only a few days on the market, Zcash is soaring in popularity, with investors paying over $1,000 for a single unit. The company, led by developer Zooko Wilcox, has already received $3 million from several Silicon Valley venture capitalists as well as the support of computer scientists at Johns Hopkins University and the Massachusetts Institute of Technology, and privacy advocates. Continue reading Harder to Trace Than Bitcoin, Zcash Virtual Currency Debuts