Full Disclosure mailing list archives
Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities
From: Andrew Auernheimer <gluttony () gmail com>
Date: Wed, 8 Sep 2010 13:53:28 -0500
This is no different then installing a client cert
Yes, exactly. This is as equally secure as installing a client cert. Except it is achieved without a client cert, using only a password, in a manner that can be more easily scaled to lots of users.
Trying to not sound like a dick, dvs.
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities, (continued)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities BMF (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Christian Sciberras (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Harry Strongburg (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Tim (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Christian Sciberras (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Christian Sciberras (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Tim (Sep 08)
- Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities Shreyas Zare (Sep 09)