Article S8TA Chrome won't trust Symantec-backed SSL as of Jun 1 unless they account for bogus certs

Chrome won't trust Symantec-backed SSL as of Jun 1 unless they account for bogus certs

by
Cory Doctorow
from on (#S8TA)

why-symantec-ssl-certificates-are-1-1-63

In September, Google caught Symantec issuing a fake google.com cryptographic certificate that could have been used to seamlessly intercept encrypted Google.com traffic. Symantec is one of the participants in Certificate Transparency, through which all new certificates issued and seen in the wild are logged to append-only, cryptographically provable logs, which create irrefutable audit trails for any bogus certs issued/discovered. (more")

External Content
Source RSS or Atom Feed
Feed Location http://boingboing.net/rss
Feed Title
Feed Link http://boingboing.net/
Reply 0 comments