Jeffrey Schiller  
Networking, Security and Cavies  
 
   
 

 

Home Page

Download my PGP Key

Building Secure Websites

Fluffernutter, Our Rabbit

Some Pig Faces!

Bretton Woods

Powers of 10

Dilbert on the Value of Research

Blog Entries

New Baby Pig
Feb. 13 2010

Deja Vu: Risks for Back Doors in Systems
Jan. 24 2010

The Cloud: Cool and not Cool
Jan. 22 2010

QR Codes
Dec. 9 2009

I've moved my Blog
Nov. 21 2009

Jeff's Laws
July 31 2009

We Don't need a new Internet
Feb. 15 2009

What's Wrong with this Picture
April 16 2008

Internet Identity
May 8 2007


Deja Vu: Risks for Back Doors in Systems

There have been stories in the press recently about how Google was hacked from China. One of the interesting observations was that the system at Google that was compromised was a system designed for lawful intercept. Back in May of 1997, a group of us, the self defined "Eleven Cryptographers" published a report entitled: "The Risks of Key Recovery, Key Escrow, and Trusted Third-Party Encryption."

One of the issues we discussed in that report was that systems designed with "back doors" (the paper was concerned with cryptography, but the concept applies more broadly) are fundamentally less secure then systems without. The "back door" becomes an attractive target for intruders. Looks like it worked this time!

Add a Comment

Entries (RSS)