Full Disclosure mailing list archives

Re: Creating a rogue CA certificate


From: "Elazar Broad" <elazar () hushmail com>
Date: Tue, 30 Dec 2008 14:35:35 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I am waiting for RapidSSL's reaction, then again, $12 certs, you
get what you pay for...

On Tue, 30 Dec 2008 14:02:11 -0500 James Matthews
<nytrokiss () gmail com> wrote:
This is going to be fun for all e-commerce sites etc....

On Tue, Dec 30, 2008 at 7:03 PM, Elazar Broad
<elazar () hushmail com> wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

SSL/PKI is only as strong as the weakest CA...

For those of you who haven't been following this, here you go:

http://www.win.tue.nl/hashclash/rogue-ca/
http://www.phreedom.org/research/rogue-ca/md5-collisions-1.0.ppt

Enjoy and Happy New Years!

elazar
-----BEGIN PGP SIGNATURE-----
Charset: UTF8
Version: Hush 3.0
Note: This signature can be verified at
https://www.hushtools.com/verify


wpwEAQECAAYFAklaVFQACgkQi04xwClgpZh4TQP+ODe2/jTHhOrLbKtoSJhZInX+lJX
t

LMkU/xlYK1Au/f1E5KhXt43uMWYSeC/M0njQRPLyrDfihFlLsmAxGK/97kRQfxEttbc
N

R0q1BL+WmbiGNglujzSWHqMSkn20r12itVfGP77nEbGYbjidV1BXxFNR2QQwLHZhGLW
e
gVO/5Zg=
=+Pm+
-----END PGP SIGNATURE-----

--
Click for free info on getting an MBA, $200K/ year potential.


http://tagline.hushmail.com/fc/PnY6qxsZwUN6299xt0fJO8HvJUKovV4hcZ7M
H3I6KbhlC0IDsYiG8/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/




--
http://www.astorandblack.com/
-----BEGIN PGP SIGNATURE-----
Charset: UTF8
Version: Hush 3.0
Note: This signature can be verified at https://www.hushtools.com/verify

wpwEAQECAAYFAklaeAcACgkQi04xwClgpZi8SQP+Put2ha0l10GRJEjOmUdYX/mjeHLz
GDWgy4kXp3SvxIyDr+xrDNGVYsZ8NjFGtcycbgn/a2ncWbulBzazIfJAqzyjcpx+uKRK
LK2M5tDNcFGT3jpm+bc17/98y7mz4ITgj1KUnmZt+tLOfCCbj1pFlbCN2k3EU+qg6/vH
lM4LM+w=
=xzmw
-----END PGP SIGNATURE-----

--
Free Download for Outlook Users
Faster Outlook Search. Try this Free Download 
 http://tagline.hushmail.com/fc/u4MuRdD6BtYsWSnscq5VAvVU82uG1NOq7MHO9miv3FQtcIDqeIWSE/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: