NODE 578ab1c9SSL Insecurity
Rick Osborne <osborne@gateway.grumman.com>Thu, 9 Jan 1997 09:42:07 -0800 (PST)
A while back, someone posted an article on the insecurity of Netscape's
implementation of SSL. Can someone send me back that article, or a few
pointers as to where I can find related information?
Thanks,
Rick
Rick Osborne / osborne@gateway.grumman.com / Northrop Grumman Corporation
-------------------------------------------------------------------------
"Get that finger out of your ear! You don't know where that finger's
been!"
NODE 0155a80bRe: SSL Insecurity
Tom Weinstein <tomw@netscape.com>Thu, 9 Jan 1997 13:45:25 -0800 (PST)
Rick Osborne wrote:
>
> A while back, someone posted an article on the insecurity of
> Netscape's implementation of SSL. Can someone send me back that
> article, or a few pointers as to where I can find related information?
As far as I know, all holes in our SSL implementation were fixed long
ago. If anyone knows of any that still exist, I'd love to hear about
them.
--
You should only break rules of style if you can | Tom Weinstein
coherently explain what you gain by so doing. | tomw@netscape.com
NODE e5d5cdfbRe: SSL Insecurity
Toto <toto@sk.sympatico.ca>Thu, 9 Jan 1997 21:40:36 -0800 (PST)
Rick Osborne wrote:
>
> A while back, someone posted an article on the insecurity of Netscape's
> implementation of SSL. Can someone send me back that article, or a few
> pointers as to where I can find related information?
>
This isn't an exact pointer, but there are some articles on it at
the following site. You may have to do a little digging.
http://www.cs.hut.fi/ssh/crypto
Toto