Swimming with the Razorfishes

Tuesday, September 14, 2004

Lexar releases their cool-looking JumpDrives with SafeGuard software to password protect data on the drive.

Someone takes a look at the drive, and determines that the password is stored as XORd data directly on the drive.

"The password is located on the JumpDrive device. It can be read directly from the device without any authentication. It is stored in an XOR encrypted form and can be read directly from the device without any authentication."

XOR? What the fuck? Didn't people learn their lessons with the stupid ROT-13 "security" scheme in PDFs? If someone gets slapped with a DMCA lawsuit for figuring this out, I'm going to be very upset.

0 Comments:

Post a Comment

<< Home