Most Popular Stories
- Rumor: iPad 3 will come with a quad-core A6 processor
- BlackBerry Cloud Service for Office 365 goes live
- What are you anticipating the most in Windows 8?
- Symantec drops warning against use of pcAnywhere, but questions remain
- A rundown of Windows 8 features you should know about
- Content Marketing could be supplanting the traditional corporate blog
Events
- COMPTEL PLUS Spring 2012
April 15-18 — San Francisco, CA - The AIIM Conference 2012
March 20-22, 2012 — San Francisco, CA - Ready to meet the next-generation of business?
March 4-6 2012 — San Francisco, CA - CIO Summit
March 18- 21 — Miami, FL
Sponsored Links
Free Newsletter
HOT TOPICS >> The tech world's top flops and fiascos of 2011 | Top 8 features in Windows 8 | Paul's Q&As
INDUSTRY >> Healthcare IT | Government IT | Financial Services IT | Biotech IT | Compliance IT
Free Newsletter
Latest News
Popular Topics
Whitepapers
- Whitepaper: Integrated Analytics and WCM Can Improve Performance & ROI
- IMPROVING THE MANAGEMENT OF FEDERAL GOVERNMENT IT ASSETS THROUGH BETTER COMMUNICATION WITH THE IT INDUSTRY
- Results of a Survey on DevOpsTrends
- Five Tips to Get IT Auditors Off Your Back
- Because Hope Is Not A Strategy: Business Continuity/Disaster Recovery Planning
- Penetration Testing with Metasploit Framework
More flash drive firms admit to security flaws
In the wake of last week's news that some of Kingston's secure flash drives have underlying flaws, more manufacturers have stepped forward saying they suffer from similar issues. So far, Verbatim and SanDisk have revealed that similar security flaws exist on some of their secure USB flash drives. Both companies issued online application upgrades to address the problem, though it is unclear how a software update can resolve what appears to be a fundamental design flaw.
What caught the public's interest is the fact that the affected drives were supposed to have been certified by NIST with FIPS 140-2 Level 2 security. However, it has now emerged that getting the NIST certification is as simple as incorporating some form of temper resistance into the hardware. Does this render the FIPS 140-2 standard useless?
David Jevans, CEO of IronKey Corp., who makes high-end secure flash drives, told Computerworld that he disagrees with the assertion that the FIPS certification is not useful. "We don't want people implementing proprietary cryptographic algorithms, which are almost always shown to be flawed," Jevans says. He further explained: "FIPS specifies that you will use well-known cryptographic algorithms, and AES went through a long and detailed public evaluation."
For more on this story:
- check out this article at Computerworld
- check out this blog at IronKey
Related Articles:
Kingston admits to insecure USB drives
Cloud service to hack your WPA network in 20 minutes
Microsoft confirms new Internet Explorer vulnerability
Crippling SSL vulnerability discovered
Related Stories
- DRM for flash memory technology to arrive in 2012
- Microsoft: Old vulnerabilities cause most Windows infections
- SanDisk's SSD upgrade revitalizes old computers
- Major ad networks hit by malvertisement
- Microsoft to release patches for record 49 vulnerabilities next Tuesday
- Kingston announces DataTraveler Ultimate USB 3.0 Flash Drive
- SanDisk introduces super small flash drives
- Latest iPhone jailbreak concerns security experts
- Mozilla ups security bug bounty to $3,000
- Many home routers could be vulnerable to web hack
Home
| Subscribe | Advertise | RSS |
Privacy
| Site Map
| EditorsTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |




