Friday, March 25, 2011

SSL Cert Weaknesses Exposed By Comodo Breach

snydeq writes "InfoWorld's Woody Leonhard delves deeper into the Comodo SSL scandal and finds the breach calls into question the integrity of the SSL certification process itself. 'While the press has focused on the sensational fact that Comodo's site was hacked from an Iranian IP address, we really should be asking three questions: How did somebody working with an Iranian IP address get a username and password from Comodo with enough clearance to create SSL certificates? Why did Comodo issue SSL certificates for google.com, live.com, yahoo.com, mozilla.org, and skype.com? Why are browser updates used to revoke SSL certificates?'"

Read more of this story at Slashdot.


COMMUNICATIONS HOLDINGS COMPAL ELECTRONICS COSMOTE MOBILE TELECOM DLINK DIGITAL CHINA HOLDINGS

No comments:

Post a Comment