The real problem that https has conspicuously failed to fix

Udhay Shankar N udhay at pobox.com
Wed Jun 11 01:48:24 EDT 2003


Pete Chown wrote [ at 10:14 AM 6/10/2003 +0100 ]:

>The bar could also show the server name for unverified connections. This 
>would avoid the attacks that use URLs like 
>http://www.microsoft.com:officesupport@virus.com .

Opera 7.x, by default, warns you whenever you are attempting to connect to 
a URL containing a username, like above.

Udhay

-- 
((Udhay Shankar N)) ((udhay @ pobox.com)) ((www.digeratus.com))


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com



More information about the cryptography mailing list