[sudoroom] SSL Observatory

Shawn Lesniak moderkaka at gmail.com
Fri Dec 21 02:08:28 CET 2012


On 2012-12-20 14:24, Eddan Katz wrote:

>     We are particularly concerned about the role and practices of
>     Certificate Authorities (CAs), which are the organizations that can
>     sign cryptographic certificates trusted by browsers. These
>     certificates can contain statements like, "this public key belongs
>     to EFF.org", "this public key belongs to yahoo.com, paypal.com and
>     mozilla.com", or "this public key should be trusted to also act as a
>     CA, signing certificates for other domains".

Related is Moxie Marlinspike's project, Convergence.

Video of his presentation - https://www.youtube.com/watch?v=Z7Wl2FW2TcA

More project info: http://convergence.io/

-Shawn




-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 944 bytes
Desc: OpenPGP digital signature
URL: <http://lists.hackerspaces.org/pipermail/sudoroom/attachments/20121220/6b3ec506/attachment.pgp>


More information about the sudoroom mailing list