Tag: ssl

Feb 15

Exemple d’analyse de trafic SSL | Korben

Exemple d’analyse de trafic SSL | Korben.

Feb 09

Trustwave admits crafting SSL snooping certificate • The Register

Trustwave admits crafting SSL snooping certificate • The Register.

Feb 09

Google to strip Chrome of SSL revocation checking

Google’s Chrome browser will stop relying on a decades-old method for ensuring secure sockets layer certificates are valid after one of the company’s top engineers compared it to seat belts that break when they are needed most.

The browser will stop querying CRL, or certificate revocation lists, and databases that rely on OCSP, or online certificate status protocol, Google researcher Adam Langley said in a blog post published on Sunday. He said the services, which browsers are supposed to query before trusting a credential for an SSL-protected address, don’t make end users safer because Chrome and most other browsers establish the connection even when the services aren’t able to ensure a certificate hasn’t been tampered with.

via Google to strip Chrome of SSL revocation checking.

Feb 08

Sécurisation de l’identification wordpress par certificat SSL « Malangot

Sécurisation de l’identification wordpress par certificat SSL « Malangot.

Feb 08

Google to strip Chrome of SSL revocation checking

Google to strip Chrome of SSL revocation checking.

Dec 16

Industry group creates guidelines for issuing SSL certs – SC Magazine US

 

 

 

 

 

 

 

Industry group creates guidelines for issuing SSL certs – SC Magazine US.

A consortium of certificate authorities (CAs) and software vendors has released the first industry standard for the issuance and management of SSL certificates.

(via Pascal M.)

 

 

 

Dec 05

sslh 1.10, la bête noire des censeurs – LinuxFr.org

sslh 1.10, la bête noire des censeurs – LinuxFr.org.

Oct 22

Schneier on Security: Google Enables SSL by Default for Search

Schneier on Security: Google Enables SSL by Default for Search.

Oct 10

Schneier on Security: Man-in-the-Middle Attack Against SSL 3.0/TLS 1.0

Schneier on Security: Man-in-the-Middle Attack Against SSL 3.0/TLS 1.0.

Sep 20

Faille de sécurité dans SSL

Des chercheurs ont découvert récemment une faille critique dans pratiquement tous les sites Web utilisant le protocole de sécurité SSL (Secure Sockets Layer) comme PayPal et Gmail.

via Des chercheurs découvrent une faille de sécurité dans SSL, pouvant être exploitée pour décrypter les données des utilisateurs.