Re: Insufficient

Date: 2008-08-29 06:28 pm (UTC)
No-no, this is not stealing the target's existing certs; this is generating new ones, probably from a different CA. Combined with the ability to redirect the target's traffic, it offers a way to do MITM on an SSL connection.

Of course, if the target is actually reading their logs, they may notice that suddenly all of their requests are coming from the same IP number. ;-)
(will be screened)
(will be screened if not validated)
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

Profile

jducoeur: (Default)
jducoeur

July 2025

S M T W T F S
  12345
6789101112
13141516171819
20212223242526
27 28293031  

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags