SafeUM
Home Blog Services Download Help About Recharge
EN
RU

Axarhöfði 14, 110 Reykjavik, Iceland

Iceland - 2015
SafeUM
Blog
Services
Download
Help
About
Recharge
Menu
EN
Lang
EN
RU
Archive
TOP Security!
26 Feb 2018

MIT's Veil service will make private browsing more private

After reports and studies revealed that browsers' private modes aren't that secure, MIT graduate student Frank Wang decided to take things into his own hands.

He and his team from MIT CSAIL and Harvard have created a tool called Veil, which you could use on a public computer -- or on a private one on top of using incognito mode and Tor if you have big secrets to keep or if you've just become paranoid after years of hearing about hacks and cyberattacks.

Wang said in a statement: "Veil was motivated by all this research that was done previously in the security community that said, 'Private-browsing modes are leaky -- Here are 10 different ways that they leak. We asked, 'What is the fundamental problem?' And the fundamental problem is that [the browser] collects this information, and then the browser does its best effort to fix it. But at the end of the day, no matter what the browser's best effort is, it still collects it. We might as well not collect that information in the first place."

MIT explained that data tends to move between different cores in multicore chips and caches, which attackers could access by exploiting flaws. Once those memory banks are full, computers could transfer data to their hard drive, and browsers can't always delete them. Veil works by encrypting a website before showing it on your screen. You'll have to type out a URL on Veil's website instead of your address bar, but it will work whatever browser you use.

The encrypted Veil-version of a website will look like its ordinary counterpart, except it has a decryption algorithm embedded in the page. Without that algorithm, the website will be unintelligible -- with it, the website's data will only be loaded so long as it's displayed on screen. If that isn't enough, Veil was designed to be able to offer even more security features. Its "blinding" server can add a bunch of nonsense code to every page, and no two pages with meaningless codes will be the same.

Further, it can take a picture of the website you want to visit and serve you that photo. The image won't have any executable code, but when you click on parts you want to see, Veil will send you an updated image. It's unclear whether you'll have to endure a considerable lag to load encrypted websites or their photos.

Developers will have to create Veil versions of their websites first, so we can test it out. Wang and his team created a compiler that can automatically do that, but that means you can only use Veil with websites that actively want to support it.

Tags:
data protection trends
Source:
TechCrunch
327
Other NEWS
25 Apr 2018 safeum news imgage Amazon has a top-secret plan to build home robots
24 Apr 2018 safeum news imgage Advanced hackers infect X-Ray machines in healthcare espionage
23 Apr 2018 safeum news imgage 'Trustjacking' could expose iPhones to attack
20 Apr 2018 safeum news imgage Google boots fake Ad blockers from Chrome web store
20 Apr 2018 safeum news imgage Data firm leaks 48 million user profiles it scraped from Facebook, LinkedIn, others
19 Apr 2018 safeum news imgage Critical unpatched RCE flaw disclosed in LG network storage devices
18 Apr 2018 safeum news imgage Apple is planning to launch a news subscription service
18 Apr 2018 safeum news imgage A big Spanish bank’s customers can now use it to transfer money
17 Apr 2018 safeum news imgage How Android phones hide missed security updates from you
16 Apr 2018 safeum news imgage Google is testing self-destructing emails in new Gmail
16 Apr 2018 safeum news imgage In a leaked memo, Apple warns employees to stop leaking information
13 Apr 2018 safeum news imgage WannaCry ransomware sinkhole data now available to organizations
13 Apr 2018 safeum news imgage Apple must pay $502.6 million to VirnetX, federal jury rules
12 Apr 2018 safeum news imgage Vevo’s YouTube account hack hits popular music videos, causes biggest video ever to disappear
11 Apr 2018 safeum news imgage Homeland security to compile database of journalists, bloggers
All news
SafeUM
Confidential Our technologies Company
Follow us
Download
SafeUM © Safe Universal Messenger

Axarhöfði 14,
110 Reykjavik, Iceland

Iceland - 2015