Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Security › Internet Security › SSL Certificates
Think your store or auction site's implementation of SSL is secure? Think again

  
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
Think your store or auction site's implementation of SSL is secure? Think again
07-31-2009, 08:31 AM,
Post: #1
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
Think your store or auction site's implementation of SSL is secure? Think again
A little something to brighten your Friday morning.  Sunny

Quote: No edition of the Black Hat conference would be complete without a few security bombshells; The ones where attendees learn that a huge swath of their digital security -- previously thought to be totally secure -- is little more than a house of cards that, thanks to some Black Hat researcher, just came tumbling down. Here in Las Vegas, Moxie Marlinspike is one of those researchers and he's here demonstrating how SSL is that house of cards. Think your implementation of SSL is secure? Think again. It's time to go back to square one.

According to Marlinspike, it's not the SSL protocol -- the protocol used for the secure form of the Web (https) -- that's the problem. It's the majority of the implementations that are utterly insecure. This includes most of the major banks, email systems, social networking sites, and so on. Even most software update mechanisms...

The glaring example is where 90 percent of your experience on some shopping site is over HTTP until the time comes to actually pay. Only then, does the shopping site send you back a page with HTTPS links on it. Everyone looks for the padlock in their browsers (these days, padlocks appear all over the place so they're useless anyway) and thinks "OK, the next thing I click on is secure. I'm good."

Think again...


full article:
http://www.informationweek.com/blog/main..._from.html
Like Post Reply
[+]
« Next Oldest | Next Newest »




Possibly Related Threads…
Thread Author Replies Views Last Post
  Avoid the Mass Spammers at Comodo / PositiveSSL When Buying SSL Certificates regic 4 15,113 09-07-2010, 11:43 AM
Last Post: mandy
  No SSL = Lost business xwpopper 4 4,462 01-11-2010, 11:01 PM
Last Post: bargainbloodhound
  Avoiding Secure & Non-Secure Site Duplication mandy 0 3,145 05-08-2008, 11:06 AM
Last Post: mandy
  Configuring SSL Under Apache mandy 0 3,440 03-11-2008, 01:21 PM
Last Post: mandy
  Verisign Ignores Complaints of SSL Seal Misuse Kristijntje 0 3,338 12-02-2007, 02:18 PM
Last Post: Kristijntje
  Who is The SSL Certification Leader? mandy 7 8,042 10-05-2007, 03:48 PM
Last Post: regic
  Extended Validation SSL Certificates may create problems for Small Businesses mandy 10 9,795 06-16-2007, 06:07 PM
Last Post: valleygirl
  List of SSL Security Certificate Providers allmusicsearch 8 11,895 10-15-2006, 01:43 PM
Last Post: bargainbloodhound
  Ecommerce Sites Face New Security Problem: SSL-evading trojans and malware regic 0 3,376 06-01-2006, 02:02 PM
Last Post: regic
  SSL Certificate Issuer Verisign Acquires Rival GeoTrust for $125 million Kristijntje 0 3,674 05-20-2006, 01:01 PM
Last Post: Kristijntje

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 05-17-2025, 06:29 PM Powered By MyBB, © 2002-2025 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.