[Cryptography] The Trouble with Certificate Transparency

Greg greg at kinostudios.com
Wed Sep 24 14:14:40 EDT 2014


This post shows how undetected MITM attacks still remain possible even if Certificate Transparency (CT) becomes widely deployed.

Many thanks go to Zaki (@zmanian), Simon (@simondlr) and others to reviewing it prior to publication:

http://blog.okturtles.com/2014/09/the-trouble-with-certificate-transparency/

Kind regards,
Greg

--
Please do not email me anything that you are not comfortable also sharing with the NSA.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20140924/4dbc4625/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 495 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20140924/4dbc4625/attachment.sig>


More information about the cryptography mailing list