oss-sec mailing list archives

Re: CVE-2009-3555 for TLS renegotiation MITM attacks


From: ArkanoiD <ark () eltex net>
Date: Mon, 9 Nov 2009 00:54:43 +0300

BTW renegotiation handshake looks quite similar to initial handshake from
the client point of view; is there a way to detect the attack on client side
and drop the connection?



Current thread: