On GameSpot: Black Wii Remote, Nunchuk hit US Nov. 16
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 8 of 9:
Next »
« Previous
Not really SSL attack - plain HTML trust attack
Given the method of attack and the fact that the user never gets to SSL connection, this article is wrong kind of alarm.

Once more this exploit is a trust based attack on the assumed actions of unencrypted HTML.

Specifically this attack is easily defeated by NEVER opening plain HTTP:// pages -- which should really be the modern browsing standard.
Posted by: wellduh   Posted on: 03/11/09 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Well  Linux User 147560 | 02/20/09
RE: Researcher demonstrates SSL attack  scifisi | 02/20/09
RE: Researcher demonstrates SSL attack  Dass_pec | 02/21/09
Oddly enough, I got an error message.  heres_johnny | 03/05/09
RE: Researcher demonstrates SSL attack  RTTECH82 | 02/22/09
RE: Researcher demonstrates SSL attack  mammasjoy@... | 02/23/09
No secrets & No wealth == So what?  wellduh | 03/11/09
Not really SSL attack - plain HTML trust attack  wellduh | 03/11/09
Campaign for SSL/TLS only Browser & Sites  wellduh | 03/11/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement