Thu 21 Feb 2008
Data Encryption Loses its Encryption
Posted by Wendell under Engineering, Technology
If you use the following encryption software for your sensitive laboratory results you may just be out of luck. Microsoft’s BitLocker, Apple’s FileVault, Linux’s dm-crypt and most other common encryption methods just became security vulnerabilities due to the research done by a team of academic, industry, and independents headed at Princeton University, Engineering School.
The flaw is found in the RAM, random access memory, a core component in computers. Computers use RAM to temporary store information and in the process store the keys used to unlock Encrypted data. The researchers found that you can access these keys while a computer is networked or even just remove the RAM and place it in another computer to retrieve the key. This flaw demonstrates that data encrypted on a company laptop is not as safe as previously believed.
Without the security blanket of encryption how does this change the protocols and policies at many companies that allow laptops to leave the workplace? With the recent reports of lost laptops at many United States Government Departments and subsequent reports of identity theft the question must be raised are we placing too much trust in programs?
One Response to “ Data Encryption Loses its Encryption ”
Comments:
Leave a Reply
Trackbacks & Pingbacks:
-
Pingback from Apple » Data Encryption Loses its Encryption
February 21st, 2008 at 7:26 pm[...] Biotech Mashup wrote an interesting post today on Data Encryption Loses its EncryptionHere’s a quick excerptIf you use the following encryption software for your sensitive laboratory results you may just be o [...]