<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Blog of Trust</title>
	
	<link>http://blogoftrust.com</link>
	<description>Watching the trusted computing world</description>
	<lastBuildDate>Mon, 26 Jul 2010 16:26:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/BlogOfTrust" /><feedburner:info uri="blogoftrust" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>Further benefits of Opal on Solid State Drives</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/leMKS8Sm1zE/545</link>
		<comments>http://blogoftrust.com/further-benefits-of-opal-on-solid-state-drives/545#comments</comments>
		<pubDate>Mon, 26 Jul 2010 16:26:47 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Storage]]></category>
		<category><![CDATA[gerson lehrman group]]></category>
		<category><![CDATA[opal]]></category>
		<category><![CDATA[thomas coughlin]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/further-benefits-of-opal-on-solid-state-drives/545</guid>
		<description><![CDATA[A recent article by Thomas Coughlin for the Gerson Lehrman Group discussed a few reasons why the Trusted Computing Group&#8217;s Opal specification for self-encrypting drives is also applicable to solid state (Flash) drives. Two benefits that I hadn&#8217;t realised were available are 1) the cryptographic secure erasure feature of Opal, zapping the decryption keys in [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.glgroup.com/News/Data-Security-in-Flash-Devices-49611.html">A recent article by Thomas Coughlin for the Gerson Lehrman Group</a> discussed a few reasons why the Trusted Computing Group&#8217;s Opal specification for self-encrypting drives is also applicable to solid state (Flash) drives. Two benefits that I hadn&#8217;t realised were available are 1) the cryptographic secure erasure feature of Opal, zapping the decryption keys in just a few milliseconds, is now recognised by the US government&#8217;s <a href="http://csrc.nist.gov/groups/ST/FIPS140_3/">FIPS 140 revision 3 draft document</a> as a permitted way of wiping drives, and 2) following on from 1), for Solid State Drives an ever-present worry is the wearing-out of the drive, but now since wiping the drive consists of just deleting a key, wear on the drive is minimised.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/_qy78BmUZC5teRp6FobxICz0zEE/0/da"><img src="http://feedads.g.doubleclick.net/~a/_qy78BmUZC5teRp6FobxICz0zEE/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/_qy78BmUZC5teRp6FobxICz0zEE/1/da"><img src="http://feedads.g.doubleclick.net/~a/_qy78BmUZC5teRp6FobxICz0zEE/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/leMKS8Sm1zE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/further-benefits-of-opal-on-solid-state-drives/545/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/further-benefits-of-opal-on-solid-state-drives/545</feedburner:origLink></item>
		<item>
		<title>Brian Berger speaking at Cloud Connect 2010</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/GfeXhPJtXwk/544</link>
		<comments>http://blogoftrust.com/brian-berger-speaking-at-cloud-connect-2010/544#comments</comments>
		<pubDate>Wed, 21 Jul 2010 16:17:00 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Virtualisation]]></category>
		<category><![CDATA[brian berger]]></category>
		<category><![CDATA[cloud connect]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/brian-berger-speaking-at-cloud-connect-2010/544</guid>
		<description><![CDATA[Here&#8217;s a keynote speech from Brian Berger of Wave Systems and the Trusted Computing Group talking on issues surround Trusted Cloud Computing, from Cloud Connect 2010. Enjoy!]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s a keynote speech from Brian Berger of Wave Systems and the Trusted Computing Group talking on issues surround Trusted Cloud Computing, from Cloud Connect 2010.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:5737277B-5D6D-4f48-ABFC-DD9C333F4C5D:e896d0a7-42c0-42c0-b587-4d32946acbde" class="wlWriterEditableSmartContent">
<div><object width="425" height="355"><param name="movie" value="http://www.youtube.com/v/JLhhhr4Ilk0&amp;hl=en_GB&amp;fs=1&amp;hl=en"></param><embed src="http://www.youtube.com/v/JLhhhr4Ilk0&amp;hl=en_GB&amp;fs=1&amp;hl=en" type="application/x-shockwave-flash" width="425" height="355"></embed></object></div>
</div>
<p>Enjoy!</p>

<p><a href="http://feedads.g.doubleclick.net/~a/4njrQor5QSj5hdaFPiRT0EiqHW0/0/da"><img src="http://feedads.g.doubleclick.net/~a/4njrQor5QSj5hdaFPiRT0EiqHW0/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/4njrQor5QSj5hdaFPiRT0EiqHW0/1/da"><img src="http://feedads.g.doubleclick.net/~a/4njrQor5QSj5hdaFPiRT0EiqHW0/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/GfeXhPJtXwk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/brian-berger-speaking-at-cloud-connect-2010/544/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/brian-berger-speaking-at-cloud-connect-2010/544</feedburner:origLink></item>
		<item>
		<title>Flash memory security issues</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/SetTzdtKtLY/543</link>
		<comments>http://blogoftrust.com/flash-memory-security-issues/543#comments</comments>
		<pubDate>Tue, 20 Jul 2010 16:07:15 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Storage]]></category>
		<category><![CDATA[flash]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/flash-memory-security-issues/543</guid>
		<description><![CDATA[With solid state drives based around Flash memory becoming more and more popular in not just portable computers but also in desktops, the question of securing them also becomes more and more important. On Monday 16th of August 2010 there will be a Flash Security Workshop as a pre-conference event at the Flash Summit in [...]]]></description>
			<content:encoded><![CDATA[<p>With solid state drives based around Flash memory becoming more and more popular in not just portable computers but also in desktops, the question of securing them also becomes more and more important. On Monday 16th of August 2010 there will be a Flash Security Workshop as a pre-conference event at the Flash Summit in Santa Clara, according to a <a title="Securing Flash Memory" href="http://www.trustedcomputinggroup.org/community/2010/07/securing_flash_memory">recent posting on the TCG official blog</a>.</p>
<p>There will be a number of talks from various experts with relationships with the Trusted Computing Group, so expect the TCG&#8217;s Opal full disk encryption standard to feature, with particular reference to how the standard may be applied to the solid state world.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/Fu6yBAsB7HAhe53Yh5c29UiQ-i8/0/da"><img src="http://feedads.g.doubleclick.net/~a/Fu6yBAsB7HAhe53Yh5c29UiQ-i8/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/Fu6yBAsB7HAhe53Yh5c29UiQ-i8/1/da"><img src="http://feedads.g.doubleclick.net/~a/Fu6yBAsB7HAhe53Yh5c29UiQ-i8/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/SetTzdtKtLY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/flash-memory-security-issues/543/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/flash-memory-security-issues/543</feedburner:origLink></item>
		<item>
		<title>Mister Reiner doesn’t like the TCG web site</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/59BAtvbrsy8/542</link>
		<comments>http://blogoftrust.com/mister-reiner-doesnt-like-the-tcg-web-site/542#comments</comments>
		<pubDate>Tue, 06 Jul 2010 16:01:00 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Advocacy]]></category>
		<category><![CDATA[mister reiner]]></category>
		<category><![CDATA[web site]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/mister-reiner-doesnt-like-the-tcg-web-site/542</guid>
		<description><![CDATA[There&#8217;s an interesting blog post that came to my attention, where Mister Reiner decides to visit the Trusted Computing Group&#8217;s web site, but finds he doesn&#8217;t like it. I agree with most of his criticisms, and I&#8217;ve chucked in my two cents. Please pay him a visit too.]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s an interesting blog post that came to my attention, where Mister Reiner decides to visit the <a href="http://www.trustedcomputinggroup.org/">Trusted Computing Group&#8217;s web site</a>, but <a title="What’s up with the Trusted Computing Group?" href="http://misterreiner.wordpress.com/2010/06/26/whats-up-with-the-trusted-computing-group/">finds he doesn&#8217;t like it</a>.</p>
<p>I agree with most of his criticisms, and <a href="http://misterreiner.wordpress.com/2010/06/26/whats-up-with-the-trusted-computing-group/#comment-160">I&#8217;ve chucked in my two cents</a>. Please pay him a visit too.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/QVab95fC45A83rvveo4DhWAz314/0/da"><img src="http://feedads.g.doubleclick.net/~a/QVab95fC45A83rvveo4DhWAz314/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/QVab95fC45A83rvveo4DhWAz314/1/da"><img src="http://feedads.g.doubleclick.net/~a/QVab95fC45A83rvveo4DhWAz314/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/59BAtvbrsy8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/mister-reiner-doesnt-like-the-tcg-web-site/542/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/mister-reiner-doesnt-like-the-tcg-web-site/542</feedburner:origLink></item>
		<item>
		<title>Open Kernel Labs and Sirrix produce a Mobile Trusted Platform</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/CWoAG4tRfjE/539</link>
		<comments>http://blogoftrust.com/open-kernel-labs-and-sirrix-produce-a-mobile-trusted-platform/539#comments</comments>
		<pubDate>Fri, 02 Jul 2010 15:17:06 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[MTM]]></category>
		<category><![CDATA[okl4]]></category>
		<category><![CDATA[open kernel labs]]></category>
		<category><![CDATA[sirrix]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/open-kernel-labs-and-sirrix-produce-a-mobile-trusted-platform/539</guid>
		<description><![CDATA[The site Mobile Dev and Design recently published an article describing a collaboration between Open Kernel Labs and Sirrix Security Technology to produce a secure mobile computing environment. The outline of the platform says: The joint prototype will run on readily available N900 mobile hardware and integrate the Sirrix Turaya Security Kernel (encryption, VPN, MTM/attestation, [...]]]></description>
			<content:encoded><![CDATA[<p>The site Mobile Dev and Design recently published an article describing a collaboration between Open Kernel Labs and Sirrix Security Technology to produce a <a title="Collaboration Yields Mobile Trusted Computing Platform" href="http://mobiledevdesign.com/software_news/collaboration-yields-mobile-platform-062310/">secure mobile computing environment</a>. The outline of the platform says:</p>
<blockquote><p>The joint prototype will run on readily available N900 mobile hardware and integrate the Sirrix Turaya Security Kernel (encryption, VPN, MTM/attestation, and trusted GUI) with the OK Labs OKL4 Microvisor to host the Sirrix Trusted Mobile Desktop alongside Android, Linux, and other guest operating systems in OKL4 secure cells.</p>
</blockquote>
<p>The N900 is <a href="http://maemo.nokia.com/n900/">Nokia&#8217;s Maemo-based mobile computer</a> that can make phone calls.</p>
<p>The new platform was displayed at Trust 2010: the Third International Conference on Trust and Trustworthy Computing in Berlin, June 21-23, where Sirrix also presented a paper entitled &quot;Toward a Trusted Mobile Desktop&quot; describing their research.</p>
<p> Oh! I just noticed that they include <em>MTM/Attestation</em>! With a bit of luck, I&#8217;ll be at Trust 2011 where I hope I can see a finished product.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/pHn3e5KW4H9BeseZ4DjyiZa1F5c/0/da"><img src="http://feedads.g.doubleclick.net/~a/pHn3e5KW4H9BeseZ4DjyiZa1F5c/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/pHn3e5KW4H9BeseZ4DjyiZa1F5c/1/da"><img src="http://feedads.g.doubleclick.net/~a/pHn3e5KW4H9BeseZ4DjyiZa1F5c/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/CWoAG4tRfjE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/open-kernel-labs-and-sirrix-produce-a-mobile-trusted-platform/539/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/open-kernel-labs-and-sirrix-produce-a-mobile-trusted-platform/539</feedburner:origLink></item>
		<item>
		<title>Trusted identity ecosystem proposed for the USA</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/ItxFt8sGVxI/541</link>
		<comments>http://blogoftrust.com/trusted-identity-ecosystem-proposed-for-the-usa/541#comments</comments>
		<pubDate>Mon, 28 Jun 2010 15:55:00 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Advocacy]]></category>
		<category><![CDATA[TPM]]></category>
		<category><![CDATA[government computer news]]></category>
		<category><![CDATA[identity]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/trusted-identity-ecosystem-proposed-for-the-usa/541</guid>
		<description><![CDATA[A draft from the US Government proposes an &#34;identity ecosystem&#34;, according to this post on Government Computer News. The National Strategy for Trusted Identities in Cyberspace discusses how both the public and private sector can use a trusted identity for more secure online transactions. The big picture is: In the envisioned identity ecosystem individuals, organizations, [...]]]></description>
			<content:encoded><![CDATA[<p>A draft from the US Government proposes an &quot;identity ecosystem&quot;, according to <a title="&#39;Identity ecosystem&#39; to replace passwords, draft strategy suggests" href="http://gcn.com/articles/2010/06/25/national-strategy-for-trusted-identities-in-cyberspace.aspx">this post on Government Computer News</a>. The National Strategy for Trusted Identities in Cyberspace discusses how both the public and private sector can use a trusted identity for more secure online transactions. The big picture is:</p>
<blockquote><p>In the envisioned identity ecosystem individuals, organizations, services, and devices would be able to trust each other because authoritative sources establish and authenticate their digital identities.</p>
</blockquote>
<p>At the consumer end, the trusted identity may be held in smart cards, USB drives, mobile devices, software certificates or Trusted Platform Modules. (The article uses the phrase &quot;trusted computing module&quot;, which when capitalised is actually the Chinese version of a TPM, but let&#8217;s ignore that!)</p>
<p>It&#8217;s an interesting article and well worth reading, as is <a title="The National Strategy for Trusted Identities in Cyberspace" href="http://www.whitehouse.gov/blog/2010/06/25/national-strategy-trusted-identities-cyberspace">a related post on the official White House blog</a>.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/VzXn584IGTP0HUTzfzcx_W9AQG0/0/da"><img src="http://feedads.g.doubleclick.net/~a/VzXn584IGTP0HUTzfzcx_W9AQG0/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/VzXn584IGTP0HUTzfzcx_W9AQG0/1/da"><img src="http://feedads.g.doubleclick.net/~a/VzXn584IGTP0HUTzfzcx_W9AQG0/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/ItxFt8sGVxI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/trusted-identity-ecosystem-proposed-for-the-usa/541/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/trusted-identity-ecosystem-proposed-for-the-usa/541</feedburner:origLink></item>
		<item>
		<title>Why you want hardware-based disk encryption</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/gG1U2k7oo_s/537</link>
		<comments>http://blogoftrust.com/why-you-want-hardware-based-disk-encryption/537#comments</comments>
		<pubDate>Mon, 28 Jun 2010 15:09:23 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Storage]]></category>
		<category><![CDATA[computer technology review]]></category>
		<category><![CDATA[opal]]></category>
		<category><![CDATA[wave]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/why-you-want-hardware-based-disk-encryption/537</guid>
		<description><![CDATA[A recent post on Computer Technology Review by Robert Thibadeau, Ph.D. from Wave Systems on behalf of the Trusted Computing Group listed a number of reasons why one should encrypt notebook computers, and why a hardware solution such as the Opal specification from the Trusted Computing Group is the best. It reports a study: One [...]]]></description>
			<content:encoded><![CDATA[<p>A recent post on Computer Technology Review by Robert Thibadeau, Ph.D. from Wave Systems on behalf of the Trusted Computing Group listed a number of reasons <a href="http://www.wwpi.com/index.php?option=com_content&amp;view=article&amp;id=8781:hardware-based-solutions-increase-encryption-security-&amp;catid=99:cover-story&amp;Itemid=2701018">why one should encrypt notebook computers</a>, and why a hardware solution such as the Opal specification from the Trusted Computing Group is the best. It reports a study:</p>
<blockquote><p>One of the conclusions of the in-depth analysis was that unlike software encryption, the performance of SEDs was comparable to standard drives in all cases. As a result, “there is simply no incentive for users to remove or bypass the encryption, even if it were possible.”</p>
</blockquote>

<p><a href="http://feedads.g.doubleclick.net/~a/NRfUw4BBUr9sTTgKepF4CU-NLRQ/0/da"><img src="http://feedads.g.doubleclick.net/~a/NRfUw4BBUr9sTTgKepF4CU-NLRQ/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/NRfUw4BBUr9sTTgKepF4CU-NLRQ/1/da"><img src="http://feedads.g.doubleclick.net/~a/NRfUw4BBUr9sTTgKepF4CU-NLRQ/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/gG1U2k7oo_s" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/why-you-want-hardware-based-disk-encryption/537/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/why-you-want-hardware-based-disk-encryption/537</feedburner:origLink></item>
		<item>
		<title>Nokia Research Center on Mobile Trusted Module</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/izA7wCqKeFQ/536</link>
		<comments>http://blogoftrust.com/nokia-research-center-on-mobile-trusted-module/536#comments</comments>
		<pubDate>Mon, 28 Jun 2010 13:57:01 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[MTM]]></category>
		<category><![CDATA[jan-erik ekberg]]></category>
		<category><![CDATA[nokia]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/nokia-research-center-on-mobile-trusted-module/536</guid>
		<description><![CDATA[I noticed recently that Jan-Erik Ekberg from the Nokia Research Center has written a chapter for the book Trust Modeling and Management in Digital Environments: From Social Concept to System Development. His chapter is entitled Mobile Trusted Computing Based on MTM, and describes amongst other things his work at Nokia on the Mobile Trusted Module, [...]]]></description>
			<content:encoded><![CDATA[<p>I noticed recently that Jan-Erik Ekberg from the Nokia Research Center has written a <a href="http://www.igi-global.com/bookstore/Chapter.aspx?TitleId=40776">chapter for the book Trust Modeling and Management in Digital Environments: From Social Concept to System Development</a>. His chapter is entitled Mobile Trusted Computing Based on MTM, and describes amongst other things his work at Nokia on the Mobile Trusted Module, the mobile phone-targeted version of the Trusted Platform Module. An extract from the abstract reads thus:</p>
<blockquote><p>This chapter provides an overview of a few hardware security architectures (in handsets) to introduce the reader to the problem domain. The main focus of the text is in introducing the MTM specification – by first presenting its main functional concepts, and then by adapting it to one of the hardware architectures first described, essentially presenting a plausible practical deployment. The author also presents a brief security analysis of the MTM component, and a few novel ideas regarding how the (mobile) trusted module can be extended, and be made more versatile.</p>
</blockquote>
<p>I&#8217;ve placed a request for this book in our office library, as <a href="http://www.igi-global.com/bookstore/TitleDetails.aspx?TitleId=37255&amp;DetailsType=Preface">the preface</a> sounds like there&#8217;s a lot of interesting coverage of the current state of the art in Trusted Computing.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/RToX4o6sIQYXKIjJ4LK7TgLYuK4/0/da"><img src="http://feedads.g.doubleclick.net/~a/RToX4o6sIQYXKIjJ4LK7TgLYuK4/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/RToX4o6sIQYXKIjJ4LK7TgLYuK4/1/da"><img src="http://feedads.g.doubleclick.net/~a/RToX4o6sIQYXKIjJ4LK7TgLYuK4/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/izA7wCqKeFQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/nokia-research-center-on-mobile-trusted-module/536/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/nokia-research-center-on-mobile-trusted-module/536</feedburner:origLink></item>
		<item>
		<title>Bunker-V – secure virtualisation from Microsoft</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/km_Wf8PvjF8/535</link>
		<comments>http://blogoftrust.com/bunker-v-secure-virtualisation-from-microsoft/535#comments</comments>
		<pubDate>Wed, 16 Jun 2010 15:40:37 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[Virtualisation]]></category>
		<category><![CDATA[cloud computing]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/bunker-v-secure-virtualisation-from-microsoft/535</guid>
		<description><![CDATA[The All About Microsoft blog on ZDNet had an interesting post regarding a new (and apparently relatively secret) virtualisation project for Cloud Computing. An interesting part is this: Bunker-V is focused on reducing the TCB [Trusted Computing Base] attack surface by minimizing the interface between the TCB and guest VMs by eliminating unnecessary virtual devices. [...]]]></description>
			<content:encoded><![CDATA[<p>The All About Microsoft blog on ZDNet had an interesting post regarding a new (and apparently relatively secret) <a href="http://www.zdnet.com/blog/microsoft/microsoft-mulls-improving-hypervisor-security-for-the-cloud-with-bunker-v/6545">virtualisation project for Cloud Computing</a>. An interesting part is this:</p>
<blockquote><p>Bunker-V is focused on reducing the TCB [Trusted Computing Base] attack surface by minimizing the interface between the TCB and guest VMs by eliminating unnecessary virtual devices. Microsoft says that this approach can reduce the TCB by 79% while retaining high performance for legacy OSes.</p>
</blockquote>
<p>Seems to be a topic that is worth following.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/deWJVGxVbdhguocUZelcyYirXdc/0/da"><img src="http://feedads.g.doubleclick.net/~a/deWJVGxVbdhguocUZelcyYirXdc/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/deWJVGxVbdhguocUZelcyYirXdc/1/da"><img src="http://feedads.g.doubleclick.net/~a/deWJVGxVbdhguocUZelcyYirXdc/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/km_Wf8PvjF8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/bunker-v-secure-virtualisation-from-microsoft/535/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/bunker-v-secure-virtualisation-from-microsoft/535</feedburner:origLink></item>
		<item>
		<title>HP Labs looking for a security researcher</title>
		<link>http://feedproxy.google.com/~r/BlogOfTrust/~3/l68i87RXZYc/534</link>
		<comments>http://blogoftrust.com/hp-labs-looking-for-a-security-researcher/534#comments</comments>
		<pubDate>Tue, 08 Jun 2010 15:47:01 +0000</pubDate>
		<dc:creator>Ken Y-N</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[hp]]></category>
		<category><![CDATA[job]]></category>

		<guid isPermaLink="false">http://blogoftrust.com/hp-labs-looking-for-a-security-researcher/534</guid>
		<description><![CDATA[I see a posting from Marco Casassa Mont, an HP employee, on a vacancy at HP Labs Bristol (or Princeton). The desirable qualifications are: A PhD in a discipline relevant to information security. Experience of security management in large organisations. Deep knowledge of at least one area of significance to security management, e.g. network security, [...]]]></description>
			<content:encoded><![CDATA[<p>I see a posting from Marco Casassa Mont, an HP employee, on <a href="http://www.communities.hp.com/online/blogs/mcm/archive/2010/06/08/141593.aspx">a vacancy at HP Labs Bristol (or Princeton)</a>. The desirable qualifications are:</p>
<ul>
<li>A PhD in a discipline relevant to information security.</li>
<li>Experience of security management in large organisations.</li>
<li>Deep knowledge of at least one area of significance to security management, e.g. network security, economics of security, systems architecture, trusted computing, operating system security, security policy, privacy, security of distributed systems, security modelling, information security, threats.</li>
<li>Strong communication skills.</li>
</ul>
<p>I know a couple of the guys at HP Bristol and I&#8217;ve read papers by a few others of them, so I think it would be a pretty awesome place to work; if I was in the UK I&#8217;d be sorely tempted to apply.</p>

<p><a href="http://feedads.g.doubleclick.net/~a/cKbJiVk2HttmGtIwXd4hh_AWt_8/0/da"><img src="http://feedads.g.doubleclick.net/~a/cKbJiVk2HttmGtIwXd4hh_AWt_8/0/di" border="0" ismap="true"></img></a><br/>
<a href="http://feedads.g.doubleclick.net/~a/cKbJiVk2HttmGtIwXd4hh_AWt_8/1/da"><img src="http://feedads.g.doubleclick.net/~a/cKbJiVk2HttmGtIwXd4hh_AWt_8/1/di" border="0" ismap="true"></img></a></p><img src="http://feeds.feedburner.com/~r/BlogOfTrust/~4/l68i87RXZYc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogoftrust.com/hp-labs-looking-for-a-security-researcher/534/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogoftrust.com/hp-labs-looking-for-a-security-researcher/534</feedburner:origLink></item>
	</channel>
</rss>
