You are here: Fairness.com > Resources > Law Enforcement Appliance Subverts ...

Law Enforcement Appliance Subverts SSL

Date: March 24, 2010
Author: Ryan Singel
QUOTE: Normally when a user visits a secure website, such as Bank of America, Gmail, PayPal or eBay, the browser examines the website’s certificate to verify its authenticity. At a recent wiretapping convention however, security researcher Chris Soghoian discovered that a small company was marketing internet spying boxes to the feds designed to intercept those communications, without breaking the encryption, by using forged security certificates, instead of the real ones that websites use to verify secure connections.

Article MetaInformation:

Key People:
Key Organizations:
Subject & Geographic Categories:

Comments:

none
*User comments are posted without Fairness.com LLC's prior review or approval, and Fairness.com LLC takes no responsibility for them; please see our Conditions of Service Agreement.