MD5 considered harmful - SSL to be considered broken?
Submitted by xqus on Wed, 12/31/2008 - 14:00
A team of researchers (including one Norwegian) has managed to break the technology that issues trusted certificates for secure websites (SSL). As a proof of concept they executed a practical attack scenario and successfully created a rogue Certification Authority (CA) certificate trusted by all common web browsers.
The long, official version and the short version. Happy reading.
Post new comment