BlueKrypt

Security of the Walloon Health Network
Written by BlueKrypt   

logorswpetitThe Walloon Health Network aims at interconnecting the digitalised medical files of the doctors to ease the continuity of care. Bluekrypt is in charge of the evaluation of the security of the elements put into place by FRATEM in the framework of this program.

"Security to protect the privacy of patients..."

Doctors who dispose of a server (typically hospital doctors) can declare, with the patient’s prior approval, some of their documents (x-ray results, reports of hospital stay, reports of visit…) to the server of the Walloon Health Network. Documents remain in hospital.

Doctors who do not dispose of a server (typically family doctors) may encode, with the patient’s prior approval, their documents (summary file of an emergency for example) on the central server.

The doctors who take care of the patient build, with his/her agreement, a therapeutic link that binds them together in the system. (Dr X took care of patient Y from 01/01/2007 to 30/06/2007). Once the link is established, the doctor can read the documents that were encoded or declared by his colleagues from his own digital medical file.

All the security mechanisms are enforced to ensure confidentiality of the data.

In the end, and subject to prior approval of the patient, any doctor taking care of him can access a complete medical file appended by all the caring agents.

 
2009 Election of UCL Rector
Written by BlueKrypt   

"A world first"...
Internet poll organised by the Université catholique de Louvain in the framework of the 2009 election of the Rector.

For first time, a "verifiable" electronic poll system was used at a large scale (25,000 potential voters).

Election_UCLBlueKrypt performed the security audit of the system and endorsed the security expert role inside the electoral committee of UCL. Beside the computing aspects, BlueKrypt validated the results of the election in order to guarantee the impartiality of the various actors implementing the system to the leadership.

This new polling system elaborated by Ben Adida, professor at Harvard, ensures the liability and a smooth election. Indeed, all ballot papers are available at the end of the process which allows an easy control of the counting and the results. Moreover, anyone can personally manufacture his own ballot paper.

For more information, we describe the principles of the Helios system in a case study: Election through Internet and you can read the following press release:

These surprising properties lead the way for « electronic » elections trusted by the voters.

Everybody can get involved and validate the ballot operations in order to get confidence in the validity of the results.

 
Tests d'intrusion
Written by BlueKrypt   
The English version of this document will soon be available.

L'objectif de ce document est de définir le cadre de réalisation d'un test d'intrusion d'un réseau externe (internet) vers un réseau interne privé.

Il s'agit principalement de transformer l'image d'un tel test réalisé par un " bidouilleur averti " et de prendre conscience de l'intérêt d'une telle opération dans un cadre contractuel.

Read more...
 
Recommandation sur la longueur des clefs cryptographiques
Written by BlueKrypt   
The English version of this document will soon be available.

Secu-SnapDans la plupart des fonctions cryptographiques, la longueur des clefs est un paramètre de sécurité important. Un certain nombre de publications académiques et gouvernementales fournissent des recommandations et des techniques mathématiques pour déterminer la taille minimale des clefs cryptographiques tout en optimisant leur sécurité.

Malgré la disponibilité de ces publications, choisir une taille de clef appropriée reste complexe, la lecture et la bonne compréhension de tous ces documents étant nécessaires.

Keylength.com vous permet d'évaluer une longueur de clef appropriée garantissant un niveau de sécurité minimal en implémentant les formules mathématiques et en résumant les informations disponibles dans toutes ces publications. Vous pouvez également comparer ces méthodes facilement.

Read more...
 
You are here: Home Documents / News

Association

L-SECLSEC is an internationally recognized association gathering the key actors in security of the information in Belgium.