The Microsoft Windows _NSAKEY Backdoor

The Microsoft Windows _NSAKEY Backdoor

Microsoft _NSAKEY is a signing key found in Microsoft’s CryptoAPI since Windows 95. Many claimed this was the ultimate backdoor for the National Security Agency. But is this a hoax, or is the _NSAKEY a real backdoor in Microsoft Windows?

A British researcher discovered that Microsoft was cryptographically signing its CryptoAPI with two keys. This means two separate entities could approve software running inside Windows. One of those entities was Microsoft. The identity of the other one remained a mystery.

But then Microsoft shipped a Service Pack 5 for WindowsNT4. Somebody down the chain of command at Microsoft forgot to remove information revealing the true identity of both of the signing keys. Chief security scientist at Ontario-based Cryptonym Andrew Fernandes found the names of the two keys. One was simply called “_KEY”. And the other was “_NSAKEY”.

Websitecyber related posts:

Health Ransomware Attack

Methodist Family Health in Arkansas is notifying certain individuals about a ransomware attack in which protected health information was breached.

International Health Issues

International Health Issues United States Department of State.

AI Doppelgangers Cyber Crime

AI scams are on the rise and are beginning to impersonate legitimate identities to scam unsuspecting internet users a new cyber crime.

Hacker Combat

Hacker Combat LLC is a news site, which acts as a source of information for IT security professionals across the world.

Hackers Arise To Hack Russia

interview a hacker about the hackers hacking Russia in the current Ukraine cyber war.

How Hackers Threaten Everything

How hackers threaten everything from your bank account to national security.

Nigerian Fraud Syndicates

All those e-mails, faxes and letters offering you a fortune and those get rich quick schemes are the Nigerian fraud scams and they are big business.

Munich Cyber Security Conference

The Munich Cyber Security Conference represents an outstanding space for exchange and discussion on solutions to the challenges in cyber security.

Cyber Attacks Australia Education

Education Industry Faces Increasing Cyber Attacks Risk. The education industry is increasingly becoming a target for cybercriminals.

SA Liberal Party Data Breach

South Australian Police are investigating another major security data breach this time involving members of the state Liberal Party.

Global Security

RAND Research Topic Global Security

2030 Future of Cybercrime

It’s the year 2030 and Cybercrime has evolved. How can individuals and industries protect themselves in the near future?
Share Websitecyber