sci.crypt
  Home FAQ Contact Sign in
sci.crypt only
 
Advanced search
January 2008
motuwethfrsasuw
 123456 1
78910111213 2
14151617181920 3
21222324252627 4
28293031    5
2008
 Jan   Feb   Mar   Apr 
 May   Jun   Jul   Aug 
 Sep   Oct   Nov   Dec 
2008 2007 2006  
total
sci.crypt Profile…
RELATED GROUPS

POPULAR GROUPS

 Up
  Re: Uninitialized RAM as a PRNG seed         


Author: John E. Hadstate
Date: Jan 1, 2008 13:17

"ross" wrote in message
news:Xns9A188BC165E7FD9026EA6ABB120C@204.153.245.22...
> When a chunk of memory is newly allocated it is filled with
> data from
> whatever program last used it. Is there anything wrong with
> using that
> to initialize a PRNG?
>
> (Unless your runtime lib "helpfully" clears new allocations
> for you, of
> course. Then you might as well just use 0 for a PRNG seed.)
>

That's exactly the problem. Some O/S's clear heap pages before
making them available to applications or after the application
releases them. In the same way, some clear stack frames while
others don't. If there's a trend, I would guess that more and
more O/S's will do this because of security considerations and,
at some point in the future, all will do the same thing (maybe
using different values).
Show full article (1.34Kb)
no comments
  Re: Uninitialized RAM as a PRNG seed         


Author: Sebastian G.
Date: Jan 1, 2008 13:02

ross wrote:
> When a chunk of memory is newly allocated it is filled with data from
> whatever program last used it.

No, exactly your program.
> Is there anything wrong with using that to initialize a PRNG?

Yes, an obvious thing: The content is most likely under the choice of the
attacker.
> (Unless your runtime lib "helpfully" clears new allocations for you, of
> course.

It's called calloc()!
no comments
  Re: Uninitialized RAM as a PRNG seed         


Author: David Wagner
Date: Jan 1, 2008 12:50

ross wrote:
>When a chunk of memory is newly allocated it is filled with data from
>whatever program last used it.

Are you sure about that? My understanding is that modern operating
systems always zero out new pages before giving them to you. (The
behavior you describe would be a security hole, because it would allow
one process to learn secrets stored in the address space of a previous
process.)
5 Comments
  Last Call for Papers Reminder: International MultiConference of Engineers and Computer Scientists (IMECS 2008)         


Author: wcecs_2008
Date: Jan 1, 2008 11:27

CFP: International MultiConference of Engineers and Computer
Scientists IMECS 2008
From: International Association of Engineers

Draft Manuscript submission deadline (extended): 7 January, 2008
Camera-Ready papers & Pre-registration due: 18 January, 2008
IMECS 2008: 19-21 March, 2008
http://www.iaeng.org/IMECS2008

The IMECS 2008 is organized by the International Association of
Engineers (IAENG), a non-profit international association for the
engineers and the computer scientists. The conference has the focus on
the frontier topics in the theoretical and applied engineering and
computer science subjects. The IMECS conferences serve as good
platforms for our members and the entire engineering community to meet
with each other and to exchange ideas. Our IMECS committees have been
formed with over two hundred and sixty committees members who are
mainly research center heads, faculty deans, department heads,
professors, and research scientists from over 30 countries. The last
IMECS 2007 has attracted more than one thousand participants from over
50 countries.

All submitted papers will be under peer review and accepted papers
will be published in the conference proceeding (ISBN:
978-988-98671-8-8). The abstracts will be indexed and available at
major academic...
Show full article (6.83Kb)
no comments
  Dont Let The Internet Over Stimulate Your Mind         


Author: bs866806
Date: Jan 1, 2008 05:19

The Internet is an awesome tool, but be careful and aware that the
cloud of over stimulation doesn't invade your mind.

It seems we have to become aware of a new problem that is starting to
invade our modern, industrial society, that being the problem of over
stimulation. The Internet is an excellent tool but we have to remember
that the mind is the most valuable tool imaginable. Some would argue
that spirit or soul is of equal or more importance, I am not
disagreeing with these people. The point that I am attempting to put
forward for discussion is that although the Internet is an excellent
new medium that can affect nearly all aspects of life in a positive
way, like all things in existence it too has a shadow side. Over
stimulation of the mind is a huge cloud in the blue sky of
consciousness.
Show full article (3.65Kb)
1 Comment
  Music Monster FM,Fimatex -1hr Online Broker,Fun Mobile US,Vidieo Maker         


Author: prbraju18
Date: Jan 1, 2008 03:40

http://www.tkqlhce.com/
click-2701385-10484684">
http://www.lduhtrp.net/image-2701385-10484684" width="300"
height="250" alt="Hier Klicken!" border="0"/>

http://www.anrdoezrs.net/
click-2701385-10458121">
http://www.ftjcfx.com/image-2701385-10458121" width="120"
height="40" alt="fimatex - Ihr Online Broker" border="0"/>

http://www.kqzyfj.com/
click-2701385-10455704">
http://www.tqlkg.com/image-2701385-10455704" width="250"
height="250" alt="Get Your Complimentary Ringtone Now!" border="0"/>
a>

http://www.jdoqocy.com/
click-2701385-10051273">
http://www.tqlkg.com/image-2701385-10051273" width="234"
height="60" alt="FREE ISSUE of Videomaker!" border="0"/>
no comments
  Music Monster FM,Fimatex -1hr Online Broker,Fun Mobile US,Vidieo Maker         


Author: prbraju18
Date: Jan 1, 2008 03:40

http://www.tkqlhce.com/
click-2701385-10484684">
http://www.lduhtrp.net/image-2701385-10484684" width="300"
height="250" alt="Hier Klicken!" border="0"/>

http://www.anrdoezrs.net/
click-2701385-10458121">
http://www.ftjcfx.com/image-2701385-10458121" width="120"
height="40" alt="fimatex - Ihr Online Broker" border="0"/>

http://www.kqzyfj.com/
click-2701385-10455704">
http://www.tqlkg.com/image-2701385-10455704" width="250"
height="250" alt="Get Your Complimentary Ringtone Now!" border="0"/>
a>

http://www.jdoqocy.com/
click-2701385-10051273">
http://www.tqlkg.com/image-2701385-10051273" width="234"
height="60" alt="FREE ISSUE of Videomaker!" border="0"/>
no comments