Archive for the ‘Security’ Category

Another hole in SSL

Posted: November 16, 2009 in Security
Tags: , ,

Discussed in Slashdot quite few days back becomes true. Some researchers had claimed was too theoretical to worry about, has now been demonstrated by exploit. The attack description is available on securegoose.org. The exploit by Anil Kurmus is significant because it successfully targeted the so-called SSL renegotiation bug to steal Twitter login credentials that passed [...]