<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearchrss/1.0/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0"><id>tag:blogger.com,1999:blog-37642592</id><updated>2012-05-06T13:52:18.876-07:00</updated><category term="Android" /><title type="text">TRUST in the News</title><subtitle type="html">News items about the &lt;a href="http://www.truststc.org"&gt;team for Research in Ubiquitous Secure Technology (TRUST)&lt;/a&gt;</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://trust-website-news.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default?start-index=26&amp;max-results=25" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>135</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/TrustWebsiteNews" /><feedburner:info uri="trustwebsitenews" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:browserFriendly>See the &lt;a href="http://www.truststc.org"&gt;Trust Website&lt;/a&gt; for details.</feedburner:browserFriendly><entry><id>tag:blogger.com,1999:blog-37642592.post-1320010578389877846</id><published>2012-05-03T15:55:00.000-07:00</published><updated>2012-05-03T15:55:46.318-07:00</updated><title type="text">How Al Qaeda Hid Secrets in a Video</title><content type="html">A May 1, 2012 Discovery News article, "&lt;a href="http://news.discovery.com/tech/al-qaeda-porn-120501.html"&gt;How Al Qaeda Hid Secrets In a Porn Video&lt;/a&gt;" discusses using &lt;a href="http://en.wikipedia.org/wiki/Steganography"&gt;steganography&lt;/a&gt; to hide documents within a video.  UC Berkeley Professor and TRUST participant &lt;a href="http://www.truststc.org/people/directory/daw"&gt;David Wagner&lt;/a&gt; was used as a source in the article.  The article states: &lt;blockquote&gt;"Wagner said that human rights workers have been using steganography to hide testimony by exploited workers or political prisoners from government security forces. The testimony is encrypted onto a file on a cellphone, which can then be scanned at a customs checkpoint without revealing the hidden documents." &lt;/blockquote&gt;See also the &lt;a href="http://politics.slashdot.org/story/12/05/01/1459245/german-authorities-find-al-qaeda-plans-disguised-in-porn"&gt;Slashdot discussion&lt;/a&gt; and the original &lt;a href="http://edition.cnn.com/2012/04/30/world/al-qaeda-documents-future/?hpt=hp_c1"&gt;CNN article&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-1320010578389877846?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/1320010578389877846" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/1320010578389877846" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2012/05/how-al-qaeda-hid-secrets-in-video.html" title="How Al Qaeda Hid Secrets in a Video" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-6030271872644708159</id><published>2012-04-18T08:59:00.002-07:00</published><updated>2012-04-18T09:26:39.917-07:00</updated><title type="text">Secretary Of Homeland Security Speaks At San Jose State</title><content type="html">On April 16th, Professor and TRUST campus Principal Investigator at San Jose State University &lt;b&gt;Sigurd Meldal&lt;/b&gt; participated in hosting a visit by Secretary of Homeland Security Janet Napolitano to the University.&lt;br /&gt;&lt;br /&gt;Napolitano spoke to students about cybersecurity and students' future in this field. As students' lives become more involved with the internet, Napolitano said students may find themselves with opportunities in areas of the nation's online defenses.&lt;br /&gt;&lt;blockquote&gt;“To minimize the risks of a successful cyberattack we need everyone,” Napolitano said. “The cyberdomain has become inseparable from our daily lives.”&lt;/blockquote&gt;&lt;br /&gt;See article in the &lt;a href="http://spartandaily.com/72476/napolitano-at-sjsu"&gt;&lt;i&gt;Spartan Daily&lt;/i&gt;&lt;/a&gt; and &lt;a href="http://www.ktvu.com/videos/news/san-jose-head-of-homeland-security-lectures-at/vGxgs/"&gt;video coverage&lt;/a&gt; of Napolitano's appearance at SJSU on Monday, April 14th.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-6030271872644708159?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6030271872644708159" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6030271872644708159" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2012/04/secretary-of-homeland-security-speaks.html" title="Secretary Of Homeland Security Speaks At San Jose State" /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-3735679557957975897</id><published>2012-02-25T07:30:00.005-08:00</published><updated>2012-02-26T00:56:27.280-08:00</updated><title type="text">Web Firms to Adopt 'No Track' Button.</title><content type="html">Support for a do-not-track button by a coalition of Internet giants, including Google, has emerged as part of the White House's call for Congress to pass a "privacy bill of rights" giving people more control over personal data collected about them.&lt;br /&gt;&lt;br /&gt;Google and others had been working around the privacy settings of millions of people that use Apple's Safari web browser on their iPhones and computers.  The code Google was using to bypass the privacy settings was noticed by Stanford researcher &lt;span style="font-weight:bold;"&gt;Jonathan Mayer&lt;/span&gt;, CS/law student with &lt;span style="font-weight:bold;"&gt;Professor John Mitchell&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Google disabled its code after being contacted by the Wall Street Journal. A Google spokesman said that &lt;blockquote&gt;Our updated Privacy Policy will make our privacy practices easier to understand, and it reflects our desire to create a seamless experience for our signed-in users.&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;See the Wall Street Journal &lt;span style="font-style:italic;"&gt;Technology&lt;/span&gt; articles on &lt;a href="http://online.wsj.com/article_email/SB10001424052970204880404577225380456599176-lMyQjAxMTAyMDEwNjExNDYyWj.html"&gt;Google's iPhone tracking&lt;/a&gt; and &lt;a href="http://online.wsj.com/article/SB10001424052970203960804577239774264364692.html"&gt; No-Track Button&lt;/a&gt; for details.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-3735679557957975897?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3735679557957975897" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3735679557957975897" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2012/02/web-firms-to-adopt-no-track-button.html" title="Web Firms to Adopt 'No Track' Button." /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-4899085714084242477</id><published>2012-01-21T11:38:00.000-08:00</published><updated>2012-01-21T11:49:16.331-08:00</updated><title type="text">Internet is still vulnerable to cyber-criminals</title><content type="html">A January 21, 2012 San Francisco Chronicle article "&lt;a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2012/01/21/BU6U1MRLBQ.DTL"&gt;Internet is still vulnerable to cyber-criminals&lt;/a&gt;" by James Temple discusses Mark Bowden's book "&lt;a href="http://www.amazon.com/Worm-First-Digital-World-War/dp/0802119832"&gt;Worm: The First Digital World War&lt;/a&gt;," which describes the October 21, 2002 attack on the Internet Domain Name Servers.&lt;br /&gt;&lt;br /&gt;The SF Chronicle article states:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;Internet Protocol version 6, will create more root name servers and add other security protections.&lt;br /&gt;&lt;br /&gt;&lt;p&gt;"But the general consensus today is that it's still pretty fragile," said Doug Tygar, professor of computer science at UC Berkeley.&lt;/p&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;See also the October 3, 2011 &lt;a href="https://www.nytimes.com/2011/10/04/books/mark-bowdens-worm-about-conficker-review.html?_r=1"&gt;review of 'Worm'&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-4899085714084242477?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4899085714084242477" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4899085714084242477" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2012/01/internet-is-still-vulnerable-to-cyber.html" title="Internet is still vulnerable to cyber-criminals" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-4034981608121141477</id><published>2011-12-13T10:09:00.001-08:00</published><updated>2011-12-13T10:24:26.727-08:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Android" /><title type="text">Android apps and advertising: A bit too cozy</title><content type="html">A Tech Republic blog entry "&lt;a href="http://www.techrepublic.com/blog/security/android-apps-and-advertising-a-bit-too-cozy/7003"&gt;Android apps and advertising: A bit too cozy&lt;/a&gt;" features the research of TRUST Ph.D. student &lt;a href="http://www.cs.berkeley.edu/%7Eafelt/"&gt;Adrienne Porter Felt&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Adrienne asked non-computer scientists: “Do you think the advertiser can use the app’s permissions?”  Twelve people answered with:&lt;br /&gt;&lt;br /&gt;Yes: 5&lt;br /&gt;No: 2&lt;br /&gt;I don’t know: 5&lt;br /&gt;&lt;br /&gt;It turns out that the answer is not that simple.&lt;br /&gt;&lt;br /&gt;Adrienne's blog entry "&lt;a href="http://www.adrienneporterfelt.com/blog/?p=357"&gt;Advertising and Android Permissions&lt;/a&gt;" states:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;"Can an advertiser use an app’s permissions?"&lt;br /&gt;&lt;br /&gt;"When you see an advertisement in an application, there are three parties.  First, there’s the application itself, which asks the user for permissions.  Second, there’s the advertising library, which is shoved into the application and therefore gains access to all of the app’s permissions.  Third, the advertising library displays the advertisement itself.  The advertisement can’t directly use any of the permissions, but the advertising library might share information with the company that is running the ad.  So if you see an REI ad while playing a game, you should know that the invisible ad library gets all of the game’s permissions, and it might share information like your location with REI."&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Adrienne is a student of Berkeley Professor &lt;a href="http://www.cs.berkeley.edu/~daw/"&gt;David Wagner&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-4034981608121141477?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4034981608121141477" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4034981608121141477" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/12/android-apps-and-advertising-bit-too.html" title="Android apps and advertising: A bit too cozy" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-3898054268169606051</id><published>2011-12-05T07:46:00.000-08:00</published><updated>2011-12-05T07:55:32.386-08:00</updated><title type="text">Carrier IQ cell phone monitor software is a nightmare</title><content type="html">TRUST Professor &lt;a href="http://wisl.ece.cornell.edu/wicker/"&gt;Stephen Wicker&lt;/a&gt; was quoted in a NetworkWorld article, "&lt;a href="https://www.networkworld.com/news/2011/120211-cornell-carrieriq-253696.html?hpg1=bn"&gt;Cornell Prof: Carrier IQ affair 'my worst nightmare'&lt;/a&gt;".  Carrier IQ is software present on various cell phones that provides call quality and other feedback to cell phone companies.&lt;br /&gt;&lt;br /&gt;&lt;p&gt;The article quotes Professor Wicker:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;"This is my worst nightmare," says Stephen Wicker, a professor of electrical and computer engineering at Cornell. "As a professor who studies electronic security, this is everything that I have been working against for the last 10 years. It is an utterly appalling invasion of privacy with immense potential for manipulation and privacy theft that requires immediate federal intervention.&lt;br /&gt;&lt;br /&gt;&lt;p&gt;"Carrier IQ claims that the collected data is 'anonymized.' Let's give this a moment's thought -- about all that it deserves. How hard would it be to 'de-anonymize' a pile of text messages between me and my wife? My mother? My children? Banking IDs with passwords?" &lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;The article was also picked picked in a &lt;a href="http://yro.slashdot.org/story/11/12/03/2112220/carrier-iq-drama-continues"&gt;Slashdot article&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-3898054268169606051?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3898054268169606051" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3898054268169606051" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/12/carrier-iq-cell-phone-monitor-software.html" title="Carrier IQ cell phone monitor software is a nightmare" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-162696167611838042</id><published>2011-10-05T16:31:00.000-07:00</published><updated>2011-10-05T16:43:55.604-07:00</updated><title type="text">White House Honors Cornell's Salman Avestimehr with PECASE</title><content type="html">TRUST investigator and Cornell Professor &lt;a href="http://www.truststc.org/people/directory/avestime"&gt;Salman Avestimehr&lt;/a&gt; was named a recipient of the &lt;b&gt;Presidential Early Career Award for Scientists and Engineers&lt;/b&gt;, the highest honor bestowed by the United States government on science and engineering professionals in the early stages of their research careers.&lt;br /&gt;&lt;br /&gt;Nominated by the National Science Foundation, Prof. Avestimehr was recognized as one of the Nation's "most meritorious scientists and engineers whose early accomplishments show the greatest promise for assuring America's preeminence in science and engineering and contributing to the awarding agencies' missions." The award includes a multi-year research grant.&lt;br /&gt;&lt;br /&gt;The press release from the White House, which includes the full list of recipients, is available &lt;a href="http://www.whitehouse.gov/the-press-office/2011/09/26/president-obama-honors-outstanding-early-career-scientists"&gt;here&lt;/a&gt;.  A press release from the Cornell University School of Electrical and Computer Engineering is available &lt;a href="http://www.ece.cornell.edu/peo-fac-showAward.cfm?awardID=147"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-162696167611838042?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/162696167611838042" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/162696167611838042" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/10/white-house-honors-cornells-salman.html" title="White House Honors Cornell's Salman Avestimehr with PECASE" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-7864170785924390935</id><published>2011-08-09T16:12:00.000-07:00</published><updated>2011-08-09T17:14:00.483-07:00</updated><title type="text">"The Science of Cyber Security"</title><content type="html">US News and World Report's article, "&lt;a href="http://www.usnews.com/science/articles/2011/08/04/the-science-of-cyber-security"&gt;The Science of Cyber Security&lt;/a&gt;" by &lt;a href="http://www.linkedin.com/pub/marlene-cimons/6/796/16a"&gt;Marlene Cimons&lt;/a&gt; gives an overview of the &lt;a href="http://www.truststc.org"&gt;Team for Research in Ubiquitous Secure Technology (TRUST)&lt;/a&gt;.  Dean Shankar Sastry is quoted:
&lt;br /&gt;&lt;blockquote&gt;
&lt;br /&gt;"“We no longer can afford to be reactive in our attitudes about cyber security,” ...
&lt;br /&gt;&lt;br/&gt;“Our current approach is bolt-on, rather than built-in patches, bolted on, like an afterthought. We need to be proactive.”
&lt;br /&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-7864170785924390935?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7864170785924390935" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7864170785924390935" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/08/science-of-cyber-security.html" title="&quot;The Science of Cyber Security&quot;" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-6216205802510278028</id><published>2011-08-09T16:03:00.000-07:00</published><updated>2011-08-09T16:09:35.117-07:00</updated><title type="text">Erika Chin: "Seven ways to hang yourself with Google Android"</title><content type="html">The research work of &lt;a href="http://www.eecs.berkeley.edu/~emc/"&gt;Erika Chin&lt;/a&gt;, an EECS graduate student studying smartphone security was featured in a Consumer Reports online magazine article titled "&lt;a href="http://news.consumerreports.org/electronics/2011/08/def-con-19-android-apps-ask-for-too-much-power.html"&gt;Def Con 19: Android apps ask for too much power&lt;/a&gt;". Erika and principal researcher &lt;a href="http://yekaterinatsipenyukoneil.sys-con.com/"&gt;Yekaterina Tsipenyuk O’Neil&lt;/a&gt; reported that after studying dozens of Android apps, 30 percent of them were over privileged and creates a larger security risk to your personal information and phone.
&lt;br /&gt;(&lt;i&gt;Based on text by Miyoko Tsubamoto&lt;/i&gt;) &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-6216205802510278028?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6216205802510278028" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6216205802510278028" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/08/erika-chin-seven-ways-to-hang-yourself.html" title="Erika Chin: &quot;Seven ways to hang yourself with Google Android&quot;" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-6003826743253543061</id><published>2011-06-13T22:56:00.000-07:00</published><updated>2011-06-13T23:19:39.357-07:00</updated><title type="text">Stanford's Dan Boneh Receives Dean's Award for Industry Education Innovation</title><content type="html">TRUST researcher and Stanford University Professor &lt;a href="http://www.truststc.org/people/directory/dabo"&gt;Dan Boneh&lt;/a&gt; was awarded the School of Engineering &lt;b&gt;Dean's Award for Industry Education Innovation&lt;/b&gt;. The award is given for "outstanding teaching and exemplary leadership in industry education" and Dan was recognized for his leadership of the Stanford &lt;a href="http://scpd.stanford.edu/public/category/courseCategoryCertificateProfile.do?method=load&amp;certificateId=1145836#searchResults"&gt;Advanced Computer Security Certificate&lt;/a&gt; program as well as teaching courses on computer systems security and cryptography.  These courses are offered by the &lt;a href="http://scpd.stanford.edu/publicViewHome.do?method=load"&gt;Stanford Center for Professional Development&lt;/a&gt; which focuses on connecting working professionals worldwide to the research and teaching of Stanford University faculty in the School of Engineering and related academic departments.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-6003826743253543061?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6003826743253543061" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/6003826743253543061" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/06/stanfords-dan-boneh-receives-deans.html" title="Stanford's Dan Boneh Receives Dean's Award for Industry Education Innovation" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-7065898602083423137</id><published>2011-06-10T16:45:00.000-07:00</published><updated>2011-06-10T16:56:58.950-07:00</updated><title type="text">TRUST Researchers to Lead Intel Security Center</title><content type="html">Intel Labs announced the creation of the &lt;a href="http://istcsc.cs.berkeley.edu/"&gt;Intel Science and Technology Center for Secure Computing (ISTCSC)&lt;/a&gt; to be led by UC Berkeley with partner institutions Carnegie Mellon, Drexel, Duke, and Illinois.&lt;br /&gt;&lt;p&gt;&lt;br /&gt;The center's work will focus on making personal computers safer from malware, securing mobile devices, and protecting personal data when it is distributed across the Internet by giving people more control over it. The center is the second announced by Intel as part of their 5-year, $100 million ISTC program that will increase university research, accelerate innovation, and encourage tighter collaboration between university thought leaders and Intel.  The ISTCSC will be funded at a level of $2.5 million per year for five years.&lt;br /&gt;&lt;br /&gt;The center will be co-led by TRUST investigator and UC Berkeley Professor &lt;a href="http://www.truststc.org/people/directory/daw"&gt;David Wagner&lt;/a&gt; and Intel Senior Principal Engineer John Manferdelli.  Among the faculty researchers participating in the center are TRUST investigators &lt;a href="http://www.truststc.org/people/directory/adj"&gt;Anthony Joseph&lt;/a&gt;, &lt;a href="http://www.truststc.org/people/directory/vern"&gt;Vern Paxson&lt;/a&gt;, &lt;a href="http://www.truststc.org/people/directory/dawnsong"&gt;Dawn Song&lt;/a&gt;, and &lt;a href="http://www.truststc.org/people/directory/tygar"&gt;Doug Tygar&lt;/a&gt; from UC Berkeley and &lt;a href="http://www.truststc.org/people/directory/adrian"&gt;Adrian Perrig&lt;/a&gt; from Carnegie Mellon.&lt;br /&gt;&lt;br /&gt;Intel released a &lt;a href="http://newsroom.intel.com/community/intel_newsroom/blog/2011/06/07/intel-labs-collaborative-efforts-speed-technological-breakthroughs-shape-future-of-computing"&gt;press statement&lt;/a&gt; announcing the creation of the center and the center’s website contains a &lt;a href="http://istcsc.cs.berkeley.edu/docs/ISTC-SC-Whitepaper.pdf"&gt;white paper&lt;/a&gt; describing the center’s research agenda.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-7065898602083423137?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7065898602083423137" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7065898602083423137" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/06/trust-researchers-to-lead-intel.html" title="TRUST Researchers to Lead Intel Security Center" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-8277636164610727192</id><published>2011-06-03T10:07:00.000-07:00</published><updated>2011-06-03T10:14:33.922-07:00</updated><title type="text">Audio Captchas defeated</title><content type="html">Stanford Professor &lt;a href="http://theory.stanford.edu/people/jcm/"&gt;John Mitchell&lt;/a&gt;, postdoctoral research &lt;a href="http://elie.im/"&gt;Elie Bursztein&lt;/a&gt; and their colleagues have developed a way to defeat the audio version of Captchas.  See &lt;a href="http://www.theregister.co.uk/2011/05/23/microsoft_yahoo_captchas_busted/"&gt;The Register&lt;/a&gt; and the &lt;a href="http://news.stanford.edu/news/2011/may/captcha-security-flaw-052311.html"&gt;Stanford News&lt;/a&gt; coverage.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-8277636164610727192?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/8277636164610727192" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/8277636164610727192" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/06/audio-captchas-defeated.html" title="Audio Captchas defeated" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-209850371788272409</id><published>2011-04-22T10:40:00.000-07:00</published><updated>2011-04-22T10:46:56.620-07:00</updated><title type="text">Stephen Wicker on iOS user privacy</title><content type="html">&lt;a href="http://wisl.ece.cornell.edu/wicker/"&gt;Professor Stephen Wicker&lt;/a&gt; was quoted in Network World's article "&lt;a href="http://www.networkworld.com/news/2011/042111-iphone-data-cornell.html?hpg1=bn"&gt;Cornell prof warns iPhone, iPad users: "We're selling our privacy&lt;/a&gt;" about the recently &lt;a href="http://www.guardian.co.uk/technology/2011/apr/20/iphone-tracking-prompts-privacy-fears"&gt;reported&lt;/a&gt; location logging by the iPhone and iPad.  The Network World article quotes Professor Wicker:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;"It is vitally important to recognize that cellular telephony is a surveillance technology, and that unless we openly discuss this surveillance capability and craft appropriate legal and technological limits to that capability, we may lose some or all of the social benefits of this technology, as well as a significant piece of ourselves," says Stephen Wicker, Cornell professor of electrical and computer engineering. "Most people don't understand that we're selling our privacy to have these devices."&lt;br /&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-209850371788272409?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/209850371788272409" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/209850371788272409" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/04/stephen-wicker-on-ios-user-privacy.html" title="Stephen Wicker on iOS user privacy" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-3383696079292418557</id><published>2011-02-26T16:36:00.000-08:00</published><updated>2011-02-26T16:47:47.602-08:00</updated><title type="text">Doug Tygar on the LinkedIn outage in China</title><content type="html">Bloomberg's February 25, 2011 article &lt;br /&gt;"&lt;a href="http://www.bloomberg.com/news/2011-02-25/linkedin-accessible-in-beijing-after-jasmine-disruption.html"&gt;LinkedIn Service Is Restored in Beijing After `Jasmine' 24-Hour Disruption&lt;/a&gt;" discusses how LinkedIn was blocked in China after a user posted comments about how "Tunisia’s Jasmine Revolution should spread to the Asian nation that’s been ruled by the Communist Party since 1949." The article quotes &lt;a href="http://www.truststc.org"&gt;TRUST's&lt;/a&gt; &lt;a href="http://www.truststc.org/people/directory/tygar"&gt;Doug Tygar&lt;/a&gt;:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;“Often, this is done as a sort of a warning signal -- sort of a shot across the bow,” said Doug Tygar, professor of computer science at the University of California at Berkeley. “A portion of that is symbolic.” &lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;The quote was also printed on page D-1 of the San Francisco Chronicle, "&lt;a href="http://www.sfgate.com/cgi-bin/article.cgi?f=%2Fc%2Fa%2F2011%2F02%2F25%2FMN7I1HUUFU.DTL"&gt;Business Report - The Chronicle with Bloomberg&lt;/a&gt;."&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-3383696079292418557?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3383696079292418557" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3383696079292418557" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/02/doug-tygar-on-linkedin-outage-in-china.html" title="Doug Tygar on the LinkedIn outage in China" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-8393484816596000515</id><published>2011-02-23T16:33:00.000-08:00</published><updated>2011-02-23T16:40:07.835-08:00</updated><title type="text">Cornell's Hakim Weatherspoon Awarded Sloan Fellowship</title><content type="html">TRUST investigator and Cornell University &lt;a href="http://www.truststc.org/people/directory/hweather"&gt;Prof. Hakim Weatherspoon&lt;/a&gt; was named a recipient of the 2011 &lt;a href="http://www.sloan.org/fellowships"&gt;Sloan Research Fellowship&lt;/a&gt; of the &lt;a href="http://www.sloan.org/"&gt;Alfred P. Sloan Foundation&lt;/a&gt;.&lt;br /&gt;&lt;p&gt;Sloan Research Fellowships seek to stimulate fundamental research by early-career scientists and scholars of outstanding promise and are awarded yearly to researchers in recognition of distinguished performance and a unique potential to make substantial contributions to their field.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;A press release of the 2011 fellowship awards is available &lt;a href="http://www.sloan.org/assets/files/press_releases/apsloan_foundation_honors_young_scholars.pdf"&gt;here&lt;/a&gt;.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-8393484816596000515?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/8393484816596000515" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/8393484816596000515" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/02/cornells-hakim-weatherspoon-awarded.html" title="Cornell's Hakim Weatherspoon Awarded Sloan Fellowship" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-103287890433075086</id><published>2011-01-18T07:08:00.000-08:00</published><updated>2011-01-18T09:15:49.028-08:00</updated><title type="text">Car Theft by Antenna</title><content type="html">According to new research to be presented at the &lt;a href="http://www.isoc.org/isoc/conferences/ndss/11/"&gt;Network and Distributed System Security Symposium&lt;/a&gt; next month in San Diego, California, car thieves of the future might be able to get into a car and drive away without forced entry and without needing a physical key.&lt;br /&gt;&lt;br /&gt;Researchers successfully attacked eight car manufacturers' passive keyless entry and start systems—wireless key fobs that open a car's doors and start the engine by proximity alone. Because a car won't open or start if the signal from its key takes too long to arrive, the researchers devised a way to speed communication between their their antennas. They were able to keep the signals in analog format, which reduced their delay from microseconds to nanoseconds, making their attack more difficult to detect. &lt;br /&gt;&lt;br /&gt;&lt;b&gt;David Wagner&lt;/b&gt;,professor of computer science at the University of California at Berkeley who has studied the cryptographic systems used in keyless entry systems, says the research "should help car manufacturers improve auto security systems in the future." Wagner doesn't think the research ought to make car owners anxious. "There are probably easier ways to steal cars," he says. But, he adds, a "nasty aspect of high-tech car theft" is that "it doesn't leave any sign of forced entry," so if a thief did use this method to steal a car, he says, it might be hard for police and insurance companies to get sufficient evidence of what happened. Wagner believes that manufacturers, police, and insurance companies all need to prepare for this eventuality.&lt;br /&gt;&lt;br /&gt;See full article in &lt;a href="http://www.technologyreview.com/computing/27037/?mod=chthumb"&gt; Technology Review&lt;/a&gt;, published by MIT.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-103287890433075086?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/103287890433075086" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/103287890433075086" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/01/car-theft-by-antenna.html" title="Car Theft by Antenna" /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-525049625082188358</id><published>2011-01-07T16:34:00.000-08:00</published><updated>2011-01-07T16:38:59.262-08:00</updated><title type="text">Commerce announces new shop to oversee online security</title><content type="html">&lt;a href="http://www.nextgov.com"&gt;NextGov.com's&lt;/a&gt; article "&lt;a href="http://www.nextgov.com/nextgov/ng_20110107_2695.php?oref=topstory"&gt;Commerce announces new shop to oversee online security&lt;/a&gt;" covers &lt;a href="http://www.commerce.gov/about-commerce/commerce-leadership/secretary-gary-locke"&gt;Commerce Secretary Gary Locke's&lt;/a&gt; announcement that&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;The Obama administration is creating an office that will coordinate with the private sector to establish a secure pathway for people, organizations and computer programs to execute online transactions...&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;Locke spoke at an industry forum sponsored by many groups, including &lt;a href="http://www.truststc.org"&gt;TRUST&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-525049625082188358?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/525049625082188358" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/525049625082188358" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2011/01/commerce-announces-new-shop-to-oversee.html" title="Commerce announces new shop to oversee online security" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-888365300621075476</id><published>2010-11-16T11:47:00.000-08:00</published><updated>2010-11-16T11:52:39.632-08:00</updated><title type="text">White House Honors Vanderbilt's Bradley Malin</title><content type="html">TRUST investigator and Vanderbilt University Professor &lt;a href="http://www.truststc.org/people/directory/malin"&gt;Bradley Malin&lt;/a&gt; was named a recipient of the &lt;b&gt;Presidential Early Career Award for Scientists and Engineers&lt;/b&gt;, the highest honor bestowed by the United States government on science and engineering professionals in the early stages of their research careers.&lt;br /&gt;&lt;br /&gt;Nominated by the National Institutes of Health and Department of Health and Human Services, Prof. Malin was recognized as one of the Nation's "most meritorious scientists and engineers whose early accomplishments show the greatest promise for assuring America's preeminence in science and engineering and contributing to the awarding agencies' missions."  The award includes a multi-year research grant.&lt;br /&gt;&lt;br /&gt;The press release from the Office of Science and Technology Policy (OSTP), which includes the full list of recipients, is available &lt;a href="http://www.whitehouse.gov/administration/eop/ostp/pressroom/11052010"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-888365300621075476?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/888365300621075476" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/888365300621075476" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/11/white-house-honors-vanderbilts-bradley.html" title="White House Honors Vanderbilt's Bradley Malin" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-758254698267480105</id><published>2010-10-21T12:06:00.000-07:00</published><updated>2010-10-21T12:30:14.641-07:00</updated><title type="text">"Fabric" To Weave Security into Code</title><content type="html">Cornell computer science faculty, &lt;b&gt;Fred Schneider&lt;/b&gt; and Andrew Meyers are developing a new computer platform, dubbed &lt;i&gt;Fabric&lt;/i&gt;, that offers a way to build security into computer systems from the start by incorporating security in the language used to write the programs.&lt;br /&gt;&lt;br /&gt;Professor Schneider states that until now, computer security has been reactive; when hackers discover a way in, we patch it.&lt;blockquote&gt;"Our defenses improve only after they have been successfully penetrated," he explained.&lt;/blockquote&gt;Fabric's programming language, an extension of the widely used Java language, builds in security as the program is written. Fabric is still a prototype, being tested on a database of Cornell computer science students.&lt;br /&gt;&lt;br /&gt;Schneider and Myers plan to scale it up for very large distributed systems, provide for more complex security restrictions on objects and enable "mobile code" — programs that can reside on one node of a network and be run on another with assurance that they are safe and do what they claim to do. And perhaps most important (and perhaps hardest), they hope to provide formal mathematical proof that a system is really secure.&lt;br /&gt;&lt;br /&gt;See article in &lt;br /&gt;&lt;a href="http://www.drdobbs.com/java/227900404"&gt; Dr. Dobb's, The World of Software Development&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-758254698267480105?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/758254698267480105" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/758254698267480105" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/10/fabric-to-weave-security-into-code.html" title="&quot;Fabric&quot; To Weave Security into Code" /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-4313387102381843387</id><published>2010-09-29T01:23:00.000-07:00</published><updated>2010-09-29T02:07:50.920-07:00</updated><title type="text">UC Berkeley's Dawn Song Awarded MacArthur Fellowship</title><content type="html">TRUST researcher and UC Berkeley Professor &lt;a href="http://www.truststc.org/people/directory/dawnsong"&gt;Dawn Song&lt;/a&gt; was named a &lt;a href="http://www.macfound.org/site/c.lkLXJ8MQKrH/b.959463/k.9D7D/Fellows_Program.htm"&gt;2010 MacArthur Fellow&lt;/a&gt; by the &lt;a href="http://www.macfound.org/"&gt;John D. and Catherine T. MacArthur Foundation&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;The so-called "genius award" is given to individuals "who have shown extraordinary originality and dedication in their creative pursuits and a marked capacity for self-direction" as well as "exceptional creativity, promise for important future advances based on a track record of significant accomplishment, and potential for the fellowship to facilitate subsequent creative work."  Prof. Song, one of 23 recipients of this year's award, was cited for her work in applying "rigorous theoretical methods to understand the deep interactions of software, hardware, and networks that make computer systems vulnerable to attack or interference."&lt;br /&gt;&lt;br /&gt;Details on Prof. Song's work and her award are available &lt;a href="http://www.macfound.org/site/c.lkLXJ8MQKrH/b.6241285/k.E229/Dawn_Song.htm"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-4313387102381843387?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4313387102381843387" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4313387102381843387" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/09/uc-berkeleys-dawn-song-awarded.html" title="UC Berkeley's Dawn Song Awarded MacArthur Fellowship" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-4482229892504970770</id><published>2010-09-21T09:22:00.000-07:00</published><updated>2010-09-21T12:22:05.294-07:00</updated><title type="text">TRUST Autumn 2010 Conference: Nov. 10-11, 2010</title><content type="html">The next TRUST Conference will be held November 10-11, 2010 at the &lt;a href="http://engineering.stanford.edu/visit/huang_center/index.html"&gt;Jen-Hsun Huang Engineering Center&lt;/a&gt; on the campus of &lt;a href="http://www.stanford.edu/"&gt;Stanford University&lt;/a&gt;.  The conference will run from approximately 8:00 AM to 5:00 PM both November 10 and 11.&lt;br /&gt;&lt;br /&gt;This event will provide attendees with an opportunity to hear firsthand about the work of TRUST faculty and students-specifically activities that:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Advance a leading-edge research agenda to improve the state-of-the art in cyber security and critical infrastructure protection;&lt;br /&gt;&lt;br&gt;&lt;li&gt;Develop robust education and diversity plans to teach the next generation of computer scientists, engineers, and social scientists; and&lt;br /&gt;&lt;br&gt;&lt;li&gt;Pursue knowledge transfer opportunities to transition TRUST results to end users within industry and the government.&lt;/ul&gt;&lt;br /&gt;For more information, see the &lt;a href="http://www.truststc.org/conferences/10/FallConference"&gt;TRUST Autumn 2010 Conference Page&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-4482229892504970770?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4482229892504970770" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4482229892504970770" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/09/next-trust-conference-will-be-held.html" title="TRUST Autumn 2010 Conference: Nov. 10-11, 2010" /><author><name>Larry Rohrbough</name><uri>http://www.blogger.com/profile/01122887820002175089</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-3475457950347356009</id><published>2010-09-20T10:46:00.000-07:00</published><updated>2010-09-20T10:51:13.904-07:00</updated><title type="text">WSJ: "J.P. Morgan Wrestles Web Snarl</title><content type="html">UC Berkeley Professor &lt;a href="http://www.tygar.net"&gt;Doug Tygar&lt;/a&gt; was quoted in a September 15, 2010 Wall Street Journal website article, "&lt;a href="http://online.wsj.com/article/SB10001424052748703743504575493752756026016.html?mod=googlenews_wsj"&gt;J.P. Morgan Wrestles Web Snarl&lt;/a&gt;."  The article discusses an outage at &lt;a href="http://chase.com"&gt;chase.com&lt;/a&gt;.  Professor Tygar is quotes as stating, ""if they have so much trouble with a software failure, what happens with an actual attack?"&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-3475457950347356009?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3475457950347356009" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/3475457950347356009" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/09/ws-jp-morgan-wrestles-web-snarl.html" title="WSJ: &quot;J.P. Morgan Wrestles Web Snarl" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-4244806645719843732</id><published>2010-08-18T10:07:00.000-07:00</published><updated>2010-08-18T10:19:49.309-07:00</updated><title type="text">UC Berkeley's Pamela Samuelson wins IP3 Award</title><content type="html">UC Berkeley Law Professor and renowned scholar &lt;b&gt;Pamela Samuelson&lt;/b&gt; is one of four winners of this year's IP3 Award from the Washington-based public interest group &lt;i&gt;Public Knowledge&lt;/i&gt;.&lt;br /&gt;&lt;br /&gt;As a director of the Berkeley Center for Law &amp; Technology, Samuelson is being acknowledged for her work in information policy, particularly in such areas as privacy, copyright, freedom of expression, intellectual property and consumer protection.&lt;blockquote&gt;"Public Knowledge has been the most important voice for public-spirited intellectual property and Internet policy,” says Samuelson. “I’m pleased that this organization believes I have made contributions to these same policies worthy of being named to this award."&lt;/blockquote&gt;&lt;br /&gt;See more in the&lt;a href="http://www.law.berkeley.edu/9218.htm"&gt; Berkeley Law News Archive.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-4244806645719843732?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4244806645719843732" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/4244806645719843732" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/08/uc-berkeleys-pamela-samuelson-wins-ip3.html" title="UC Berkeley's Pamela Samuelson wins IP3 Award" /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-7405761376455210211</id><published>2010-08-10T10:59:00.000-07:00</published><updated>2010-08-10T11:17:19.350-07:00</updated><title type="text">Web add-ons compromise 'private browsing'</title><content type="html">A &lt;a href="http://crypto.stanford.edu/~dabo/pubs/abstracts/privatebrowsing.html"&gt; study&lt;/a&gt; by &lt;b&gt;Dan Boneh&lt;/b&gt; of Stanford University claims that many browser add-ons or website security measures stop the 'private browsing' mode from working correctly.&lt;br /&gt;&lt;br /&gt;Boneh and team examined the private browsing functions on Mozilla's Firefox, Microsoft Internet Explorer, Google Chrome and Apple's Safari and discovered all four were affected.  Moreover, they discovered that all browsers retained the generated key pair even after private browsing ends which could  leak the site's identity to an attacker.&lt;blockquote&gt;"We found that private browsing was more popular at adult web sites than at gift shopping sites and news sites, which shared a roughly equal level of private browsing use," Boneh said in the report.&lt;br /&gt;&lt;br /&gt;"This observation suggests that some browser vendors may be mischaracterising the primary use of the feature when they describe it as a tool for buying surprise gifts."&lt;/blockquote&gt;&lt;br /&gt;Boneh and his researchers say they believe they are the first to show that 'private browsing' can be compromised.&lt;br /&gt;&lt;br /&gt;See full article at &lt;a href="http://www.pcadvisor.co.uk/news/index.cfm?newsid=3234529"&gt;PC Advisor&lt;/a&gt;. Related articles appear at &lt;a href="http://www.thinq.co.uk/2010/8/6/browser-porn-modes-exposed/"&gt; THIN!.co.uk&lt;/a&gt; and &lt;a href="http://www.bbc.co.uk/news/technology-10891355"&gt; BBC NEWS&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-7405761376455210211?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7405761376455210211" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/7405761376455210211" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/08/web-add-ons-compromise-private-browsing.html" title="Web add-ons compromise 'private browsing'" /><author><name>Mary Stewart</name><uri>http://www.blogger.com/profile/12297903454408422755</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author></entry><entry><id>tag:blogger.com,1999:blog-37642592.post-1971979316483844825</id><published>2010-06-28T10:33:00.000-07:00</published><updated>2010-06-28T10:45:08.870-07:00</updated><title type="text">Patents seen as low priority for software firms</title><content type="html">Tom Abate's San Francisco Chronicle article, "&lt;a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2010/06/22/BU6J1E37U0.DTL"&gt;Patents seen as low priority for software firms&lt;/a&gt;" discusses the paper written by Stuart J. H. Graham, Robert P. Merges, &lt;a href="http://people.ischool.berkeley.edu/%7Epam/"&gt;Pamela Samuelson&lt;/a&gt; and Ted M. Sichelman, "&lt;a href="http://papers.ssrn.com/sol3/papers.cfm?abstract_id=1429049"&gt;High Technology Entrepreneurs and the Patent System: Results of the 2008 Berkeley Patent Survey&lt;/a&gt;."&lt;br /&gt;&lt;br /&gt;The article quotes Pamela Samuelson:&lt;br /&gt;"More than 80 percent of the biotech, medical device and hardware firms we surveyed have or have applied for patents. . . About two-thirds of software firms have no patents and have not applied for any."&lt;br /&gt;&lt;br /&gt;The study is also discussed by &lt;a href="http://www.physorg.com/news196533327.html"&gt;Phyorg&lt;/a&gt;,  &lt;a href="http://broadbandbreakfast.com/2010/06/study-patents-not-a-top-priority-at-software-and-internet-start-ups/"&gt;Broadbandbreakfast&lt;/a&gt; and &lt;a href="http://www.canadaviews.ca/2010/06/25/survey-challenges-popular-beliefs-about-high-tech-startup-patents/"&gt;Canadaviews&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/37642592-1971979316483844825?l=trust-website-news.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/1971979316483844825" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/37642592/posts/default/1971979316483844825" /><link rel="alternate" type="text/html" href="http://trust-website-news.blogspot.com/2010/06/patents-seen-as-low-priority-for.html" title="Patents seen as low priority for software firms" /><author><name>Christopher Brooks</name><uri>http://www.blogger.com/profile/03042907938411870505</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="26" height="32" src="http://ptolemy.eecs.berkeley.edu/image/ptolemySmall.gif" /></author></entry></feed>

