Thought Komodia/Superfish Bug Was Really, Really Bad? It's Much, Much Worse!

Posted by BernardSwiss on Feb 24, 2015 11:13 PM EDT
Techdirt; By Mike Masnick
Mail this story
Print this story

But it gets worse. Filippo Valsorda has shown that you didn't even need to crack Komodia's weak password to launch a man-in-the-middle attack, but its SSL validation is broken, such that even if Komodia's proxy client sees an invalid certificate, it just makes it valid. Seriously.

Full Story

  Nav
» Read more about: Story Type: News Story, Security

« Return to the newswire homepage

This topic does not have any threads posted yet!

You cannot post until you login.