@sleevi_ @alexstamos disagree. we don't need more CAs, even sub. I can't get one why should a multi million USD corp get one? dafaq.
-
-
@BRIAN_____@TheSecurityFail yep, I agree there. but does it work for software outside the browser world? X.509 extension are widely ignored -
@a_z_e_t@TheSecurityFail It's time to stop caring about that old software and move on. I've given everyone free code & tests & more for NC. -
@BRIAN_____@TheSecurityFail SMTP MTA MITM is no joke. this is an issue. real world. and exploited widely. not everything is www. -
@BRIAN_____@TheSecurityFail there're three competeing papers proving this.@ralphholz et al.@zakirbpd and my crew:@Fr333k@WilfriedMayer -
@BRIAN_____@TheSecurityFail@ralphholz@zakirbpd@Fr333k@WilfriedMayer most useful for MSA/MDA though. -
@a_z_e_t@TheSecurityFail@ralphholz@zakirbpd@Fr333k@WilfriedMayer We deploy shit X.509 code → We avoid NC → We keep shit code → We lose -
@BRIAN_____@TheSecurityFail@ralphholz@zakirbpd@Fr333k@WilfriedMayer sure but mail code stays around for a looong time,.. -
@BRIAN_____@TheSecurityFail@ralphholz@zakirbpd@Fr333k@WilfriedMayer also MUAs don't auto-upgrade like some browsers
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.