Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20091108215443.GA26622@eltex.net>
Date: Mon, 9 Nov 2009 00:54:43 +0300
From: ArkanoiD <ark@...ex.net>
To: oss-security@...ts.openwall.com
Cc: tls@...f.org
Subject: Re: CVE-2009-3555 for TLS renegotiation MITM attacks

BTW renegotiation handshake looks quite similar to initial handshake from
the client point of view; is there a way to detect the attack on client side
and drop the connection?


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.