Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Comodo continues to issue certificates to known Malware
Search Topic:
Uniqs:
4639
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Anyone have a similar problem? »
« 2nd vulnerability in Firefox 3.0.10: KEYGEN tag  
page: 1 · 2 · 3
AuthorAll Replies


DonnaB
Premium
join:2003-05-07
malaysia

reply to EGeezer
Re: A basic flaw in X.509?

Right. There's weakness about certificates and I'm sure we've seen other demos how bad guys will misuse a cert/validation -- extended or not (thanks BTW for those links).

If only they just acknowledged the alert, took action... there'll be no additional controversy on their services. And as already mentioned in other post in this thread, they have security software for end-users to at least, another means to protect end-users privacy and security.

Been visiting buy and download links but CIS is still quiet on my downloads. Anyhoo, just another experience on another desktop AV software I guess

Regards,
Donna


dvd536
as Mr. Pink as they come
Premium
join:2001-04-27
Phoenix, AZ

reply to sivran
Re: Comodo continues to issue certificates to known Malware

said by sivran See Profile :

Hmmm. I'm beginning to eye my Comodo Firewall with suspicion. While it may be perfectly fine, I don't really trust the company, or their certs.
Exactly why i'm kicking boclean to the curb when it craps out and i was a paid customer back when boclean was good.
--
When I gez aju zavateh na nalechoo more new yonooz tonigh molinigh - Ken Lee


Nikolai



 reply to hayc59
I want someone to provide proof of a compromised computer that has/had CIS running. Personally I had multiple (total of 12 workstations) running CIS (Firewall + Defense Plus) for the last couple of years with no issues. They run online financial data 24/7 with no compromise of security and/or data theft. Seems that non-granted paranoia is wide spread in this forum.


sivran
Long Live The Suite
Premium
join:2003-09-15
Arlington, TX
clubs:
·RoadRunner Cable

reply to Grail Knight
said by Grail Knight See Profile :

I will still use Comodo Firewall until it is proven that there is something amiss w/ it.

I can think of numerous companies where one part or division screws up well the rest of the companies cranks out excellent products.
I realize that. Office 2007 is fairly nice (IMO, anyway), while Windows Vista is nigh intolerable (IMO). Even in Comodo's case, the firewall's pretty good, but their anti-virus is absolutely horrible.

But, shouldn't there also be a trust between the user of a product and the vendor?

I wonder how many with AIG insurance switched to another provider, despite the fact that the insurance division is wholly separate from the much-smaller financial products division.
--
The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no warrants shall issue, but upon profitable cause...


Grail Knight
Who Dares Wins
Premium
join:2003-05-31
·Verizon Online DSL

Of course there should be a trust.

I trust Comodo's firewall but not their AV. I let Avast handle that side of security.

This is a world full of companies and individuals that do well in one area and fail miserably in other areas. The key is to be able to distinguish between the two.
--
“Facts not FUD."


DigitalBizPerp

@rr.com

reply to Daniel
Re: A basic flaw in X.509?

I'm not sure I'd add to X.509, but certainly having a
"digital business bureau" that can attest to good business practices would be helpful.

If a CA is found to be untrustworthy, then I remove them from my root CA list. So far, only COMODO has left the building.

For example, as of 2007/2008 VONAGE is no longer a BBB member due to multiple unresolved complaints. But there seems to be no technical/automated mechanism for checking a domain name against BBB membership (or i'd have seen a browser add-on already, wouldn't I?)

I'd be far more likely to trust a business certified by two CAs in different jurisdictions than one that was only certified by
Verisign, for example.


hayc59
VoodooChild
Premium
join:2001-02-26
David R.I.P.

reply to hayc59
Re: Comodo continues to issue certificates to known Malware

Criminals using Comodo to attempt legitimacy
For most of this month there has been a discussion over the business practices of Comodo, the company who along with free security software offers SSL certificates for online businesses. The discussion is not that they offer SSL certificates, it is that they offer them to criminals as well as legit businesses, with little to no checks during the process or once the certificate is in place. Most were unhappy that it took Comodo so long to respond to the issue itself.
»www.thetechherald.com/article.ph···gitimacy
--
ãrê ¥Øu êxpêriêncêD
Microsoft® MVP Consumer Security 2007-09
"Greater love has no one than this, that he lay down his life for his friends."
9/11/01 Never Forget
-
Forums » Up and Running » Security » SecurityAnyone have a similar problem? »
« 2nd vulnerability in Firefox 3.0.10: KEYGEN tag  
page: 1 · 2 · 3


Thursday, 10-Dec 16:57:49 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [200] Sprint Sued For Distracted Driving Death
· [131] AT&T Launching New 24 Mbps U-Verse Tier
· [85] AT&T Hints At Usage-Based iPhone Data Pricing
· [82] 3G Network Test Says AT&T Is Tops
· [72] Mediacom Unveils 105 Mbps Pricing
· [71] WPA Cracker: Test WPA-PSK Networks In 20 Minutes
· [66] Sprint Poised For A Turnaround?
· [51] The Future Of Wi-Fi Is Bright
· [50] Average American Consumes 34 Gigabytes Daily
· [47] Site Leaks Yahoo, Verizon Fed Data Share Pricing
Most people now reading
· [WIN7] Well, I was dumb, but do I have recourse? [Microsoft Help]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· New Mediacom Email [Mediacom]
· Windows 7 boot manager editing questions [Microsoft Help]
· malware has been found hidden inside an Ubuntu screensaver [Security]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· Battered Hilt Delimma [World of Warcraft]
· major Electrical Problems [Home Repair & Improvement]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· [DNS] Google's public DNS... performance increases? [Comcast HSI]