Technology Review - Published By MIT
Advertisement

Calling Cryptographers

With hardware, software, and networks constantly under attack, security experts says they're ready to fight back.

By Kate Greene

Thursday, February 16, 2006

smaller text tool iconmedium text tool iconlarger text tool icon

Microsoft CEO Bill Gates kicked off the annual RSA Conference on information security in San Jose this week with a call for a simpler approach to making computers more secure. His big-picture vision: the entire computing industry working together to fashion a "true ecosystem" of security, as businesses continue facing cyberattacks.

Although the solutions for data security won't be foolproof, experts agree, they believe that hardware, software, and networks can be made much safer by creating a multilayered solution. At least, that's the argument Gates and others made to an estimated 14,000 conference attendees -- from software developers and cryptographers to hackers and lawyers.

Gates' most radical solution is replacing password protections, often too easily defeated by phishing and other forms of low-tech hacking, with an InfoCard, a digital identity that can be stored in the microchip of a smart card and used to access password-protected websites.

Of course Microsoft has a keen interest in promoting more secure computing environments, since its operating systems are routinely the target of virus attacks. The InfoCard is one of many new security features supported by Internet Explorer 7 and Vista, the latest incarnation of Microsoft's ubiquitous operating system (see "A Window into Vista"). Gates noted, however, that the shift away from passwords would likely take as long as four years because it requires the collaboration of numerous vendors.

While the InfoCard technology should be useful for personal data security, large institutions, such as banks, are looking at large-scale defenses to tackle Internet scams. Art Coviello, CEO of RSA Security International, discussed his company's network-based solution, which he dubbed "community policing." By using the very networks that hackers exploit, he says, companies can fight fraud and cybercrime at different nodes, instead of in isolation. For instance, if a cybercriminal in a third-world country exploits a stolen credit card number, then tries to hide behind a proxy server in New York, RSA's system quickly blacklists that New York IP address and immediately notifies banks and other organizations.

In addition to software and network defenses proposed by Microsoft and RSA, Scott McNealy, CEO of Sun Microsystems, addressed the steps his company has taken to ensure that computer hardware in servers and data centers is as secure as possible. Sun has built computer processors that support a form of encryption called "elliptical curve" cryptography (ECC), a standard approved by the National Security Agency. ECC uses a smaller "key" -- the collection of bits used to encrypt and decrypt a message -- than traditional cryptographic methods, and is therefore ideal for not only computers, but also small devices such as cell phones and even sensors.

Comments

  • Freedom
    Please consider the political factors before throwing money at Mr. Gates. There are 58 people in jail now for dissident politics on the internet. That can become  58,000 dead people overnight if the internet becomes transparent for government observation.   
    Rate this comment: 12345
    Guest (vinh lee)
    02/16/2006
    Posts:1
    • Diffie-Hellman
      Its for key exchange, its not an encryption technique. You can do ECC-DH to exchange ECC keys too. the two main encryption types are RSA and ECC.
      Rate this comment: 12345
      Guest (SQ)
      02/20/2006
      Posts:1
  • Cryptography
    I think it is now well known that the RSA algorithm was actually invented at Bletchley Park several years before Rivest, Shamir and Adelman were granted their patent.  No objections were raised by the real inventors or the British Government for whom they worked.  That is not to minimise the efforts of the three Americans. 
    Rate this comment: 12345
    Guest (Martin Willcocks)
    02/16/2006
    Posts:1

Log In

Forgot your password?     Register »
Advertisement

Videos

Making 3D Maps on the Move
Technology Review November/December 2009

Current Issue

Natural Gas Changes the Energy Map
The United States has vast supplies of this cleaner fossil fuel. But how should we use it?
Featured Content
Sponsored by:
White Papers

Twelve ways to reduce costs with SQL Server 2008
Find out how to reduce costs and get more efficient

Download

Total Economic Impact of SQL Server 2008 Upgrade
Forrester reports on increasing productivity and management capabilities

Download 

Achieving Cost and Resource Savings with UC
How Office Communications Server R2 and Exchange Server can make your business smarter and more efficient

Download 

The Compelling Case for Conferencing
Read how you can improve workload support and find IT efficiencies

Download

How Windows Server 2008 R2 Helps Optimize IT and Save you Money
Read how you can improve workload support and find IT efficiencies

Download

Windows Server 2008 R2 Hyper-V Live Migration
See how Windows Server 2008 R2 and Hyper-V enable virtualization and Live Migration

Download
Advertisement
Subscribe to Technology Review's daily e-mail update. Enter your e-mail address

TECHNOLOGY RESOURCES
Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.