Recent #security news in the semiconductor industry

5 months ago
➀ Hacker Aedan Cullen gains access to the OTP secret by glitching the RISC-V cores of the RP2350; ➁ The RP2350 was introduced as a successor to the RP2040 with added security features; ➂ The hacking challenge was to uncover a secret hidden in the RP2350's OTP memory.
HackingMicrocontrollerRISC-VRP2350Raspberry Pisecurity
5 months ago
➀ Crypto Quantique enhances its QDID PUF with a TRNG, making it resilient against side-channel attacks due to quantum entropy source; ➁ The TRNG generates new, unpredictable random numbers for cryptographic operations; ➂ QDID provides a secure foundation for root-of-trust in IoT devices without storing identities and keys in memory.
IoTPUFsecurity
6 months ago
➀ As more sites and services require login accounts, users are overwhelmed with managing multiple passwords, leading to poor choices like reusing passwords. ➁ Microsoft is promoting passkeys as a replacement for passwords and has been working to integrate this authentication method into its services. ➂ The company aims to make passkeys the default method of account authentication, simplifying user management and enhancing security.
Microsoftsecurity
6 months ago
➀ The FTC warns of a significant increase in online job scams, known as 'task scams,' which ask applicants to perform fake tasks to defraud them of money. ➁ The scams often involve receiving vague messages about online work and being asked to complete tasks like 'app optimization' or 'product boosting.' ➂ The FTC reports that these scams have quadrupled in the first half of 2024, with reported losses exceeding $220 million in the first six months.
FTCsecurity
6 months ago
➀ Crypto Quantique has upgraded its QuarkLink IoT platform with a hybrid post-quantum cryptographic algorithm; ➁ The platform reduces the time and expense of implementing security functions in embedded devices by up to 10X; ➂ The hybrid key encapsulation mechanism combines X25519 with Kyber (ML-KEM) for both current and future security.
EncryptionIoTMicrochipPrivacySoftwarecybersecuritypost-quantum cryptographysecuritytechnology
6 months ago
➀ The MAXREFDES9001 is an IoT security reference design from Analog Devices that provides a solution for secure, low-power sensor networks; ➁ It features a LoRa-based temperature sensor node, secured by the DS28S60 cryptographic coprocessor, and includes a LoRa gateway and a cloud application hosted on AWS infrastructure; ➂ The design allows for secure data transmission and ensures integrity, confidentiality, and authentication.
IoTsecurity
6 months ago
➀ The OpenWrt One router has been released at a price of $89; ➁ The router is designed for hacking enthusiasts and features dual Ethernet ports, three USB ports, and dual-band Wi-Fi 6; ➂ OpenWrt One is built with open-source OpenWrt firmware pre-installed and is considered unbrickable.
NetworkingRouterWi-Fi 6hardwareopen-sourcesecurity
7 months ago
➀ The CHERI Alliance has been launched by a group of founding members including Chevin Technology, Google, and others to establish CHERI as a new standard for memory safety and software compartmentalization. ➁ The alliance aims to protect against memory-related vulnerabilities, which account for about 70% of cyberattack vulnerabilities. ➂ CHERI technology, developed since 2010, offers protection against memory safety issues like buffer overflows and heap use-after-free vulnerabilities.
GoogleSoftwarecybersecurityhardwaresecuritytechnology