Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Comodo continues to issue certificates to known Malware
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Anyone have a similar problem? »
« 2nd vulnerability in Firefox 3.0.10: KEYGEN tag  
AuthorAll Replies


ColdinCbus
Premium
join:2002-12-28
Columbus, OH
clubs:

reply to danny9
Re: Comodo continues to issue certificates to known Malware

Other SSL Cert providers are doing the same thing. The issue is that Comodo also has a security product software line where the other cert providers don't.
--
Team Discovery Project Hope


coldmoon
Premium
join:2002-02-04
Broadway, NC
·Windstream

said by ColdinCbus See Profile :

Other SSL Cert providers are doing the same thing. The issue is that Comodo also has a security product software line where the other cert providers don't.
This complicates things I am sure, but does not always mean that the commercial services "division" is set up to support or coordinate with the PC security side of things. While on a personal note I would suggest strongly that this should be tighter, there is no obligation on the part of a company to follow a specific business or operational model.

The litmus test here is what the competition will do and whether taking an opposing approach to the current models will result in:

1. Greater market share
2. A realignment of the certificate industry that focuses on real security

What is important now is that this is being debated and exposed to a wider audience. At the very least it should give competitors something to think about...

JMHO
Mike
--
Returnil - 21st Century body armor for your PC


ColdinCbus
Premium
join:2002-12-28
Columbus, OH
clubs:


1 edit
I totally agree with you. What I would like to see is that Comodo, at least, run the process through a database of rouge domains and IP addresses (I am pretty sure they are plugged into the same matrix we are if not even deeper in so they should have access to a pretty healthy list). That should flag some of the certificates for manual review. IT would be a step in the right direction for "Creating Trust Online".
--
Team Discovery Project Hope
-
Forums » Up and Running » Security » SecurityAnyone have a similar problem? »
« 2nd vulnerability in Firefox 3.0.10: KEYGEN tag  


Monday, 30-Nov 06:27:56 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [124] Time Warner Cable Fires Broadside At Broadcasters
· [112] New AT&T Ad Campaign Hits Back At Verizon
· [96] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [82] Weekend Open Thread
· [80] TiVo Sees Record Customer Losses
· [79] Verizon CEO: Hulu Will Be Dead Soon
· [69] In-Flight Internet Headed For Bumpy Landing?
· [63] Thanksgiving Open Thread
· [41] ICANN Slams DNS Redirection
Most people now reading
· Are GPS's better today? [General Questions]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Is Easynews down? [Filesharing Software]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· Windows 7 boot manager editing questions [Microsoft Help]
· Grey Cup on the Web? [Canadian Chat]
· Considering Leaving Vonage, who should I Consider? [VOIP Tech Chat]
· persistent connection to qw-in-f113.1e100.net on boot [Security]
· Leveling to 85 [World of Warcraft]
· Options if ACTA is ratified [TekSavvy]