Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
PKI - Breaking the Yellow Lock
Richard Forno, 2002-02-13

PKI provides Web users with a false sense of security that undermines the security of their on-line information.

Comments Mode:
PKI - Breaking the Yellow Lock 2002-02-13
Anonymous (1 replies)
PKI - Breaking the Yellow Lock 2002-02-22
Anonymous
PKI - Breaking the Yellow Lock 2002-02-14
Sjonnie (1 replies)
PKI - Breaking the Yellow Lock 2002-02-15
Anonymous (1 replies)
Man-in-the-Middle 2002-02-17
Anonymous
This is news... how? 2002-02-15
TheReject (2 replies)
This is news... how? 2002-02-15
Rick Forno (1 replies)
This is news... how? 2002-02-27
Anonymous
This is news... how? 2002-02-19
Chroma Key (1 replies)
This is news... how? 2002-02-20
Anonymous (1 replies)
This is news... how? 2002-02-22
J. Rogers
PKI - Breaking the Yellow Lock 2002-02-17
Anonymous
PKI - Breaking the Yellow Lock 2002-02-17
Exothermic Reaction (2 replies)
PKI - Breaking the Yellow Lock 2002-02-20
Oh, Please (1 replies)
PKI - What has it to do with yellow locks anyway? 2002-03-09
Mark
Absolutely Accurate and Eloquently Put.

That is like catching a plane from New York to Washington, and then complaining that you have to find a way from the airport to your house when you have a perfectly valid airline ticket. The job of PKI is to ensure that the information arrives at the web server in an untampered, unaltered, and unsnooped manor. In general that is what it does, with a very high level of success. The investment in set-up to get around the normal SSL to MiM it is not worth the gains generally. Once the data has arrived at the server it is the job of the system designers to ensure that it is used and stored properly.

This is not the story the headline sold.

Nor is it even well written for that matter.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/60/10901#10901
PKI - Breaking the Yellow Lock 2002-02-20
Anonymous
PKI - Breaking the Yellow Lock 2002-02-18
Anonymous
PKI - Breaking the Yellow Lock 2002-02-18
Anonymous
PKI - Breaking the Yellow Lock 2002-02-19
A concerned person
PKI - Breaking the Yellow Lock 2002-02-19
A concerned person (1 replies)
PKI - Breaking the Yellow Lock 2002-02-20
WillieWang
PKI - Breaking the Yellow Lock 2002-02-20
emts@telstra.com (1 replies)
PKI - Breaking the Yellow Lock 2002-02-23
Anonymous
PKI - Breaking the Yellow Lock 2002-02-21
Anonymous (1 replies)
PKI - Breaking the Yellow Lock 2002-02-22
Anonymous
To the Author 2002-02-27
Anonymous (1 replies)
To the Author 2002-03-02
Anonymous (1 replies)
To the Author 2002-03-04
Anonymous
PKI - Breaking the Yellow Lock 2002-03-06
Milind Gokhale







 

Privacy Statement
Copyright 2009, SecurityFocus