Bad News From Las Vegas
Posted in in the news on Jul 30th, 2009
The SSL certificate vulnerabilities discussed at Black Hat yesterday are both scary and irritating. Scary, because the ramifications are huge. Banking. Health care. Email. Software repositories. Irritating for two reasons, namely who on earth decided to allow null strings in certificate in the first place and why the hell wouldn’t an SSL implementation not read [...]