[dundee] SSL Certificate Vulnerability - The Paper

gordon dunlop astrozubenel at googlemail.com
Mon Jan 5 11:18:25 UTC 2009


Following on from previous posts about this vulnerability here is the
paper that was given at the 25th Chaos Communications Congress
organized by the Chaos Computer Club (CCC) in Berlin, Germany. On a
side note, didn't some members of the Chaos Computer Club attend one
of our talks at the DCA last year? maybe someone can put me right on
this.

http://www.win.tue.nl/hashclash/rogue-ca/

There are also links to Microsoft's and Mozilla's reply to this vulnerability.

Gordon



More information about the dundee mailing list