Skip to content

Instantly share code, notes, and snippets.

@ryazo
ryazo / nickp-ha-security-notes.txt
Created January 30, 2018 17:27 — forked from grkvlt/nickp-ha-security-notes.txt
Notes on high-assurance security methods by Nick P from Schneier on Security blog
OpenSSL leaks, Target hacks, NSA surveillance... We need a way to evaluate system security that works. What would it look like?
I finally put my proprietary development framework on Schneier's blog for free in 2013 in a reply to another commenter. There was
hardly any demand for effective, ground-up security that I've specialized in so why not be altruistic. Cleaned up version at the
link below:
http://pastebin.com/y3PufJ0V
Then, the Snowden leaks happened and I was glad to see my framework addressed about every NSA attack vector, including in TAO catalog.
Exception was physical implants although I'm always clear that devices enemies got possession of can't be trusted. Far as source of my
https://assets.documentcloud.org/documents/4116928/Cuban-Missile-Crisis-Redacted.pdf
https://assets.documentcloud.org/documents/4116927/JFK-Declassguide-Redacted.pdf
https://assets.documentcloud.org/documents/4116779/Kaspersky-Lab-Embargoed-News-10-25-17-Redacted.pdf
https://assets.documentcloud.org/documents/4116277/NSA-Slide-on-Saudi-Ordered-Attack-by-Syrian.pdf
https://assets.documentcloud.org/documents/4114577/Small-Area-FMR-Lawsuit.pdf
https://assets.documentcloud.org/documents/4114296/JLASS-SP-AY16-Situation-Update-1.pdf
https://assets.documentcloud.org/documents/4113332/QUANTUMTHEORY-CT-Successes-WikiInfo-Redacted.pdf
https://assets.documentcloud.org/documents/4113331/Portalsix-Adv-Redacted.pdf
https://assets.documentcloud.org/documents/4112323/BAO-Bosporus-2008-Cleaned.pdf
https://assets.documentcloud.org/documents/4111320/RGA-2017.pdf