EntropyCapture: Simple Extraction of DPAPI Optional Entropy

EntropyCapture: Simple Extraction of DPAPI Optional Entropy

IntroDuring a short application assessment, enumeration and decryption of a third-party application’s Windows Data Protection API (DPAPI) blobs using SharpDPAPI produced non-readable data because optional entropy was being used. This may be ...
via  the comic delivery system monikered  Randall Munroe  resident at   XKCD  !

XKCD ‘Dynamic Entropy’

via the comic delivery system monikered Randall Munroe resident at XKCD! Permalink ...

The RSA Homonym

RSA® customers have legitimate reasons to be concerned when reading that RSA certificates are vulnerable. Those concerns are addressed by explaining how RSA products use, and generate, RSA certificates and cryptographic keys ...
The digital entropy of death: link rot

The digital entropy of death: link rot

We take a look at how link rot risks turning every website into an unreachable island—locking crucial information away behind a plethora of broken links—and some of the security concerns that may ...
Kansa: Get-AutorunscDeep.ps1 -- Taking Autorunsc to 11

Kansa: Get-AutorunscDeep.ps1 — Taking Autorunsc to 11

I wanted to put up a quick post about a new Kansa collector I recently added -- Get-AutorunscDeep.ps1. Sysinternals' Autoruns is a great utility for finding auto-start extension points in Windows and ...

Rootkit.com Password Analysis

rootkit.com succumbed to a social engineering attack and more than 42000 of its user's passwords were made available on internet in clear (here). John the Ripper was used to recover the passwords ...