Security through obscurity - Wikipedia, the free encyclopedia
Security through obscurity (sometimes called security by obscurity ) is a principle in security engineering, which attempts to use secrecy (of design, implementation, etc.) to provide security. A s...
en.wikipedia.org/wiki/Security_through_obscurity
Intentional Security Through Obscurity: Security through obscurity may refer to an intentional act of trying to maintain or strengthen security by keeping security policies and procedures secret.
blogs.techrepublic.com.com/security/?p=379 blogs.techrepublic.com.com/security/?p=379
I'm not sure this is Security through Obscurity, which to me means that it's hidden in a way that cannot be found. Instead, this is much more a magician's trick of deception & misdirection. It's effective until you know the secret.
www.schneier.com/blog/archives/2008/06/security_throug_... www.schneier.com/blog/archives/2008/06/security_throug_1.html
Counterpane Internet Security News ... I coined a term called the "Window of Exposure" to explain the evolution of a security vulnerability over time. A vulnerability is a bug; it's a programming mistake made by a programmer during the product's development and not caught during testing.
www.schneier.com/crypto-gram-0111.html
Security Through Obscurity (STO) is the belief that a system of any sort can be secure so long as nobody outside of its implementation group is allowed to find out anything about its internal mechanisms. Hiding account passwords in binary f...
http://users.softlab.ntua.gr/%7Etaver/security/secur3.h...
In case you were wondering, "there is no security through obscurity" is a common phrase used by security practitioners. It means that the security community cannot rely on keeping the security approach secret, and instead must advertise the mechanism for security but keep the "keys" to the security transaction protected.
www.communities.hp.com/online/blogs/securityprinting/ar... www.communities.hp.com/online/blogs/securityprinting/archive/2009/04/19/there-is-no-security-through-obscurity.aspx
Security by obscurity relies on protecting a system or application by hiding knowledge of its existence. This article shares my point of view on why security through obscurity is the wrong way to go. ... Ignorance is not bliss. Security through obscurity doesn’t work. It only means that the bad guys know things that...
netsecurity.about.com/cs/generalsecurity/a/aa060103.htm netsecurity.about.com/cs/generalsecurity/a/aa060103.htm
This one is on Security Through Obscurity, and why it just doesn't work. Specifically, Bruce talks about cryptography and why open source is necessary to produce truly secure internet applications. ... Why Security-Through-Obscurity Won't Work...
slashdot.org/features/980720/0819202.shtml
When Security-through-obscurity Works ... Security-through-obscurity is rightfully derided under most circumstances. My favorite examples are silly copy-protection schemes that are trivially foiled: ... Let's refine our concepts a bit here, because there is a place in your security architecture for security-through-obscurity.
www.enterprisenetworkingplanet.com/netsecur/article.php... www.enterprisenetworkingplanet.com/netsecur/article.php/3680286
security through obscurity (alt.: security by obscurity ) A term applied by hackers to most OS vendors' favorite way of coping with security holes ... Hacker Slang: security through obscurity...
www.answers.com/topic/security-through-obscurity www.answers.com/topic/security-through-obscurity