Date Published: March 29th, 2010
CA as a Man-In-The-Middle Facilitator

A scary new paper discusses how certificate authorities (CAs) are a weak link in SSL and can be (or are being) compelled to issue fake cert that allow surveillance that is undetectable by any of the major web browsers. Caveat browsor, as always.

by Christopher Heiser on March 29 13:31
