"Affected FIPS certified devices include the SanDisk Cruzer Enterprise FIPS Editions CZ32 and CZ46 in 1G, 2G, 4G and 8G; and the Verbatim Corporate Secure FIPS Edition in 1G, 2G, 4G and 8G. A number of other USB drive models from SanDisk, Verbatim and Kingston not certified under FIPS also are affected by the vulnerabilities."
"The drives use the AES encryption algorithm with a strong 256-bit key to encrypt data stored on the devices. The AES algorithm remains secure, but the problem lies in the application running on the host computer to validate the password used to authorize decryption of data."
FIPS 140-2 сертификат будут пересматривать; целая серия *секюр-драив*-ов используемая государственными структурами оказалась далеко не секюр...
fcw.com/articles/2010/01/11/usb-vulnerabilities.aspx
"Affected FIPS certified devices include the SanDisk Cruzer Enterprise FIPS Editions CZ32 and CZ46 in 1G, 2G, 4G and 8G; and the Verbatim Corporate Secure FIPS Edition in 1G, 2G, 4G and 8G. A number of other USB drive models from SanDisk, Verbatim and Kingston not certified under FIPS also are affected by the vulnerabilities."
"The drives use the AES encryption algorithm with a strong 256-bit key to encrypt data stored on the devices. The AES algorithm remains secure, but the problem lies in the application running on the host computer to validate the password used to authorize decryption of data."
Отправить комментарий