Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
PKI - Breaking the Yellow Lock
Richard Forno, 2002-02-13

PKI provides Web users with a false sense of security that undermines the security of their on-line information.

Comments Mode:
PKI - Breaking the Yellow Lock 2002-02-13
Anonymous (1 replies)
PKI - Breaking the Yellow Lock 2002-02-22
Anonymous
PKI - Breaking the Yellow Lock 2002-02-14
Sjonnie (1 replies)
PKI - Breaking the Yellow Lock 2002-02-15
Anonymous (1 replies)
Man-in-the-Middle 2002-02-17
Anonymous
This is news... how? 2002-02-15
TheReject (2 replies)
This is news... how? 2002-02-15
Rick Forno (1 replies)
This is news... how? 2002-02-27
Anonymous
This is ridiculous and irresponsible. Should I even bother pointing out that Entrust's flagship product, TruePass, was specifically designed and marketed as, among other things, a technology to overcome the lack of persistent encryption in SSL? I think the company is quite honest in pointing out this flaw. It helps them sell their product. Why say they have something to hide or are less than honest with their customers?

As far as trusting people to operate a secure system, what is your point? Would you prefer that people not trust people hired to perform in trusted roles with a set of responsibilities and stated liabilities? Why trust the President to run the country? Why trust the person at McDonalds to not poison your burger? If we can't rely on policies and procedures to describe how people are to operate a system, and expect people to follow them, why bother having any business or government of any kind? This is a ridiculous debating point with no useful outcome.

Also, why are you being deceptive in not pointing out that most credit cards offer fraud protection? Perhaps you have something to hide?

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/60/10677#10677
This is news... how? 2002-02-19
Chroma Key (1 replies)
This is news... how? 2002-02-20
Anonymous (1 replies)
This is news... how? 2002-02-22
J. Rogers
PKI - Breaking the Yellow Lock 2002-02-17
Anonymous
PKI - Breaking the Yellow Lock 2002-02-17
Exothermic Reaction (2 replies)
PKI - Breaking the Yellow Lock 2002-02-20
Anonymous
PKI - Breaking the Yellow Lock 2002-02-18
Anonymous
PKI - Breaking the Yellow Lock 2002-02-18
Anonymous
PKI - Breaking the Yellow Lock 2002-02-19
A concerned person
PKI - Breaking the Yellow Lock 2002-02-19
A concerned person (1 replies)
PKI - Breaking the Yellow Lock 2002-02-20
WillieWang
PKI - Breaking the Yellow Lock 2002-02-20
emts@telstra.com (1 replies)
PKI - Breaking the Yellow Lock 2002-02-23
Anonymous
PKI - Breaking the Yellow Lock 2002-02-21
Anonymous (1 replies)
PKI - Breaking the Yellow Lock 2002-02-22
Anonymous
To the Author 2002-02-27
Anonymous (1 replies)
To the Author 2002-03-02
Anonymous (1 replies)
To the Author 2002-03-04
Anonymous
PKI - Breaking the Yellow Lock 2002-03-06
Milind Gokhale







 

Privacy Statement
Copyright 2009, SecurityFocus