
Princeton Study re: encryption vulnerability
Utimaco Positioning
Oberursel/Foxboro, 22th February 2008 / There is truth in the vulnerability issue raised by the Princeton report and, in fact, it has been a known issue for some time. What is new is that by applying cooling techniques, the window of vulnerability is increased. Even with this discovery, however, the methods outlined below mitigate the security risks.
According to Utimaco Safeware this issue can be easily addressed by leveraging certain security policies, best practices and well designed encryption products. The opportunity for exposure occurs when a laptop or desktop is left unattended in a ‘power on’ state. Ensuring your computer is in hibernation mode or powered down prior to stepping away negates the vulnerability. In addition, employing ‘power on authentication’ further secures your data by requiring user re-authentication from either the ‘hibernate’ or ‘power off state’ to regain normal working mode.
Furthermore, additional protection can be achieved particularly against remote attacks with multi-factor authentication using cryptographic smartcards, tokens and biometrics, such as a fingerprint reader. For those requiring an even greater level of security, hardware security modules (HSM) can be deployed. HSM solutions, such as those offered by Utimaco, provide security that is physically tamperproof and has an active temperature sensing functionality.
About Utimaco Safeware AG – The Data Security Company.
Utimaco is a leading global provider of data security solutions, enabling mid- to large-size organizations to safeguard their data assets against intentional or unintentional data loss, and to comply with privacy laws. Utimaco’s complete range of data security solutions provide full 360 degree data protection for data at rest, data in motion and data in use. Utimaco offers its customers comprehensive on-site support via a world-wide network of certified partners and subsidiaries. Utimaco Safeware AG, with headquarters in Oberursel, near Frankfurt, Germany, is listed on the Frankfurt Stock Exchange (ISIN DE0007572406). For more information please visit http://www.utimaco.com.
Additional information:
Utimaco Safeware AG – The Data Security Company.
http://www.utimaco.de/press
http://www.utimaco.com
Rieke Bönisch
Tel: +49 (0)6171 88 – 12 10
E-Mail: rieke.boenisch@utimaco.de