On Wednesday (12/17), Collin Jackson will be giving a talk at MIT titled, “Extracting Passwords from JavaScript Password Managers“. I can’t go due to scheduling conflicts but it seems worth considering if you are local and interested in my post about PassPack and Clipperz. I didn’t see any obvious papers from Collin’s website about the attacks he is describing but there are some that look worth reading.
-
About me
- Homepage
- Blog
- Publications
- Research
- E-mail me at
. - Follow me on Twitter here.
-
Recent Twitter Activity- An error has occurred; the feed is probably down. Try again later.
-
Tags
abstraction academia authentication chord clipperz conferences cookies cryptography dhash dht dokuwiki e-mail education encryption flash friendfeed git grid-computing hosting howto implementation interviews javascript math mercurial moinmoin neil van niekerk openid passpack password Photography planetlab privacy programming python question security social networks tools twitter usability vmware web2.0 wiki workflow
One Comment
Collin is working on a security assessment focused on the Bookmarklet component used by some Online Password Managers.
He was very kind in notifying us (Clipperz) about a vulnerability that he found, and that we have already fixed.