Understanding the TLS Renegotiation Attack – Educated Guesswork
Tuesday, November 10th, 2009explains Marsh Ray’s attack in details, pls patch to fix the TLS protocol
explains Marsh Ray’s attack in details, pls patch to fix the TLS protocol
Posted in exploit, for:collidr, infosec, Security, ssl, tls | Comments Off | permalink
a note from security ppl that session/login cookies that normally delivered via https have to be explisidly marked as “secure” so they _only_ delivered via https. Otherwise bad ppl can hijack them.
Posted in cookies, for:charlesnw, for:collidr, programming, Security, ssl, web | Comments Off | permalink
good explanation of debian openssl bug. worth reading if programming is what u do for a living
Posted in bugs, crypto, development, for:collidr, Linux, programming, Security, ssl | Comments Off | permalink
You are currently browsing the archives for the ssl category.
Konstantin Antselovich (c) 2004-2011
powered by WordPress
Entries (RSS)
and Comments (RSS).