Security :: Side-Channel Leaks In Web Applications?
Apr 1, 2010
I found this to be an interesting take on a problem which has plagued encryption since before the Internet:
Quote:
Popular online applications may leak your private data to a network eavesdropper, even if you're using secure web connections, according to a new paper by Shuo Chen, Rui Wang, XiaoFeng Wang, and Kehuan Zhang. (Chen is at Microsoft Research; the others are at Indiana.) It's a sobering result -- yet another illustration of how much information can be leaked by ordinary web technologies.
I installed Ubuntu 11.04 on my laptop and was looking to do the same onto my desktop.However, when I installed the 11.04 download and put it onto a disk and booted my Desktop from the disk, I went into try and the side panel that is on my laptop isn't on this one. It has the Applications, Places and System menus on the top as it was in 10.10.Is this just in the try version side of things, or how can i change it to the new side panel.....thing?
I've tried some more recent builds of Libre Office from Alien Bob and I'm still getting crashes when I try to dock the Navigator panel on the left side of the window for any of the office applications.
Details are in this post. More specifically, I'm running libreoffice-3.2.99.3-i486 from Eric. When I run 'oowriter' (Libreoffice Writer) from the command line, and then try to dock the navigator panel, I get this message after the crash:
Code: Gtk-Message: (for origin information, set GTK_DEBUG): failed to retrieve property `GtkOptionMenu::indicator-size' of type `GtkRequisition' from rc file value "0" of type `glong' Gtk-Message: (for origin information, set GTK_DEBUG): failed to retrieve property `GtkOptionMenu::indicator-spacing' of type `GtkBorder' from rc file value "0" of type `glong'
I don't know if it happens with the 64-bit version or not. I haven't tried it yet. I'm no stranger to submitting bug reports, but I haven't looked closely at Libreoffice's bug submitting procedures. I'll do that soon.
PC seems to run fine in single channel mode but monitor reports no input in dual channel mode and memtest86+ lists from 1-3 errors per pass in single channel mode. Motherboard (Gigabyte P43T-ES3G) can't be set for the 1.65 volts required by the RAM (2x2 of OCZ3P1333LV4GK PC3 10666). The mobo voltage choices are 1.6 or 1.7 volts. I have tried both and increased the MCH voltage from 1.1 v to 1.2 v, but so far can't get it to run in dual channel mode at all and single channel mode seems to run fine but I still get errors in memtest86+. Also tried optimized Bios settings and loosened memory timings (from 7-7-7-16 to 8-8-8-27 and tRFC 60 to 70) and reset Command Rate from 0 to 2. CPU is Core 2 Quad @ 2.4 Ghz, PSU is rated at 400 watts, Video card is Gigabyte GT220.
I'm trying to crack my wep password just for kicks, but I keep running into the same error. When I try to use airplay-ng for the packet injection, it always gives me the error " wlan0 is on channel -1, but the AP uses channel 6". I've tried setting wlan0 to channel 6 manually, but that doesn't help. I spent a while searching for a solution, but it seemed like each page had a different, usually highly complex solution, that still doesn't work. I have the most recent drivers for my wireless card, and it meets all the requirements. So, is there any solution to this that will actually work?
Thinking about building a new system, with 4GB of DDR3 RAM. I am just wondering, which would you prefer: Dual-channel DDR3 or Quad-channel DDR3? Does one have better speed performance over another? Will one way keep your system cooler?
I have one requirement i.e I want to call the java file from the php function using shell_exec command , i am using the chroot jail concept , if i using this command i am getting the empty file because java environment is outside the chroot jail,so how to access the the files those are out side the chroot jail.
I just don't know how centos is using the memory but... I took a look at httpd conf, may be I've missed something when I type "free mem" in ssh the memory is increasing while I'm playing one video, flv and mp4 on my site. it is increasing each time I play a different videos either the same.
I've set up OpenVPN on a Linux server. All my Internet traffic goes through the VPN from that server. I'm running Windows 7 at home. I noticed in Wireshark that DNS queries are not going through the encrypted tunnel, but instead directly to my ISP's designated DNS servers.
To overcome this, I tried pushing DNS for OpenVPN from the server to my computer, and also inputting the DNS address in my wireless adapter's configuration options. This appears to have secured the DNS leak, but is it the proper way to go about it? If I didn't push the DNS address from the server to the client and only set the DNS in the client's wireless adapter, then I couldn't visit any website. And if I just pushed the DNS but didn't set it in the adapter, then some DNS requests still leaked to the ISP's DNS servers.
How would I use a unix grep regular expression to find any two capital letters side by side and how would I find an expected comma in an expected spot?
I have two (or more) video files that I want to play side by side. I could do that simply by opening them in two seperate windows, but that would also seperate all the controls (play/pause/forward/...). I want to play them in a synchronized fashion so that pause/forwarding/... works on both videos simultaneously so that they always stay at the same timecode and they don't go out of sync. How would I accomplish that in Linux?
This is needed for viewing only, so compositing them into a new video file first should be avoided if possible, but if there isn't an easy way to do that, I welcome answers doing it with composition as well.
If a file gets created in the user's Desktop folder, or if a drive is added to the machine and a Desktop icon is correspondingly created, they will by default appear on the left side of the desktop (unless, in the case of the latter, the specific drive has been created before and dragged to the right side, in which case GNOME will remember to put it in the same place).
Because I have a terminal window embedded onto my Desktop in the top left corner and occupying most of the screen), I keep my icons on the right side of the Desktop instead of the left (Mac style) - Any time I add a new drive or a file is sent to the Desktop, however, I have to kill the terminal window to be able to click on the icon, then drag it back to the right side, then restart the terminal.
Is there any way to tweak GNOME so that these icons are added from the top right corner and down instead of from the top left, automatically?
have been trying to setup a dual boot system with ubuntu and XP running side by side on my Thinkpad T41.tried it a few times and always causes the same problem. i have 40 gig HDD, on which i create a 13 gig NTFS partition and leave the rest as free space. then install XP on the NTFS partition. no problems.
then i boot from the ubuntu disk (9.10 Karmic) and install using the "use free space" option at the partition section. ubuntu installs ok, and boots fine from GRUB 2.0. BUT when i select the XP option from GRUB's list, it starts to boot XP, i get the standard XP loading screen for three seconds and then it crashes to a blue screen critical problem, and restarts the system. when i then boot from the xp cd and go into recovery mode CHKDSK will not recognise the disk, and DISKPART shows one HDD at 35 gig which it cannot access.
this means i cant run FIXBOOT and get my xp install running again. every time i do this process it produces the same problem. tried at first with xp installed on whole HDD, and reducing the xp partition size. killed XP. then tried ubuntu first and xp second - but this caused the same inaccessible disk problem - xp would not recognise the partitions and would not install. so i slipstreamed my XP install disk to SP2 hoping this would make it recognise the partitions, but no luck there. so had to format all and repartition the 13 gig NTFS for xp. installed xp again without difficulty but ubuntu install killed my xp in the same way.
I'm looking for a software to compare two documents (for example .odt) side by side or highlighted in graphical way. I want to do the same as Word 2010 Compare Documents (see this: Microsoft Word 2010: View Two Documents Side By Side). I found in OpenOffice something a bit similar that, see in <Edit> -->> <Compare documents>, but it's not a good visual presentation. I'm looking for a software who give me the possibility to see the differences between two documents side by side, or highlighted.
I'm wondering how much of my currently installed packages I can transfer to a new system...I have a HDD split in two. I have 10.4 on one half (/dev/sda6) - my working system for the last year or so since my last upgrade - and I have just installed 11.04 on the other half (/dev/sda. I wanted to check out the new version rather than upgrading. note I have my home folder and all stored data on other drives (zfs mirrored disks) - the boot disk is mostly OS related... I can overwrite /dev/sda8 with impunity as long as /dev/sda6 is intact....
What I want to do is capture the wide variety of packages I have installed on the old version and install them onto the new system - without using the dist-upgrade mechanism... I've had it fail too many times leaving me with a complete rebuild being required... is this (partially) possible or have too many core packages changed? I was especially thinking of something like [URL]
I'm using NFS and I have the following problem. After ~100 days, the client and server lose connection, but the client doesn't know about this, it gives no error. The problem is that the changes on the server side aren't visible on the client side.
Created application is working too slow, looks like there are a lot of memory leaks, there are a lot of pointers. Any effective tool for run-time errors and memory leaks detection in Visual Studio C++?
It used to be a sysadmin/yast setting wherein you configured the display.It is now done under "personal settings"-->"display" meaning ordinary users can set their own preferences. That's really nice and all, but I'd rather it be sysadmin-only than have to go through several minutes of futzing around with it every blasted time I login. So, how can I make side-by-side permanent either for myself or for all the people who use my system (just me)? Thank you.
This module is only for configuring systems with a single desktop spread across multiple monitors. You do not appear to have this configuration.Since I obviously do and since I can get the desktops to spread across the monitors (after futzing for several minutes).
I did a search but for this topic and I thought it would be discussed quite a bit, did not get any results. Maybe I did not use the correct words? Anyhow, I am running Kubuntu 9.04 and wish to switch to Ubuntu Karmic 9.10. I do still want to keep Kubuntu 9.04 as a boot up option temporarily in case I have major issues with Ubuntu. Ill also need to know how to get rid of Kubuntu after Im sure all is well with Ubuntu. Finally, there are a ton of boot options (different kernels Ive upgraded to) in Grub when Kubuntu boots up. How do I get rid of those? I also have a Windows XP partition that I boot into occasionally.
Just installed Ubuntu 10.04 on my home laptop after testing it (and loving it) on my work desktop just this morning. First time Ubuntu user and looking to be a long one, too.Anyways, I used the "install side-by-side" on both machines, but my laptop, with Vista, has a weird side effect. At the boot screen, I chose Windows Vista and it booted the recovery tool (I forgot the exact name). I was worried at first, but when I chose the actual Windows Recovery option below it to attempt to fix it, it booted Vista. So it seems in the process of partitioning the HDD for Ubuntu I somehow switched what each partition boots. Is there a way to correct this?
I would like to know how I can view two windows side by side on the same desktop (ex. have two openoffice files side by side) and be able to work on both of them at the same time rather than having to click back and forth from window to window. I have seen this done on people that have MAC computers is there anyway to do this on Ubuntu?
I have installed Ubuntu 10.10 on my computer. And now for some reasons I need to install Windows 7 side by side with it. I tried it before and ended up loosing my Ubuntu partition. I wanna keep Ubuntu as my main operating system.
I am running Lucid, but i want to test Debian OS, but i don't want to run in VM, therefore i had decided to install Debian side-by-side to Ubuntu.Debian also uses Grub-2..? i am asking this because once i install it, i don't want to lose my Ubuntu, therefore i need Advice before install it,.
I have to say that I don't mind Unity all that much! Certainly not as much as I had expected to, given what I had been reading before the upgrade from Maverick. I'd like to go on playing around with it. However, I would also like to continue to be able to use Gnome 2 sometimes, with Compiz and Emerald, as I have done in the past.
The trouble is that whenever I log into the "Ubuntu classic" desktop, it loads compiz, complete with the Unity plugin. Then I have to disable the Unity plugin manually every time, and do the same (with no panel) whenever I log into Unity.
Is there a way I can configure it to only load the Unity plugin in the Unity desktop, but not in the Gnome 2 desktop?
The 2.6.37 kernel has proved disappointing for me on one lap top at least. The KMS disregards any boot-up parameters and bringing X on seems to be a big struggle for the lap top. The logon screen for run level 3 appears for several seconds before the lap top starts up the GUI logon. Worst of all, applications seem to take twice as long as they used to to get started.
No doubt there are some tweeks I could do but the main problem seems to be that the lap top is not powerful enough to cope with the KMS. I am even considering downgrading back to Slackware 13.1 (which this laptop had no trouble coping with).
Before doing this I thought I would try the 2.6.38.4 kernel and see if this overcame any problems. An initial trial looked promising but evidently there is more to using a new kernel than unpacking the huge 2.6.38 kernel and re-running lilo. I was unable to get past the login screen because many of the 2.6.38 directories don't exist.
Can I set up a laptop so that I can choose which kernel I want to use at boot-up time or do I have to make a total commitment with one kernel only?