This is a archived project. See http://blogs.23.nu/disLEXia/stories/492/ for details and further pointers.

Tuesday, 22. July 2003

Thawte issues doppelganger certs warning

Thawte issues doppelganger certs warning By John Leyden Posted: 17/07/2003 at 16:04 GMT

  Digital certificate specialist Thawte has discovered that its systems have issued certificates with duplicate numbers over the last few months.

If one of the paired certificates is revoked the other will also be disavowed. Which is a pain. But essential encryption and security functions are not affected.

A technical rep for the South Africa-based security firm assured us that each private key obtained for a certificate is unique regardless of the certificate's serial number. We're thankfully not looking at a repeat of the incident two years ago when Verisign mistakenly issued a pair of digital certificates to scam artists in Microsoft's name .

...

[The Register - Security]
10:42 | #

<< Re: [ISN] Update: Money seen as biggest obstacle to effective IT- security | Spammers Target Wi-Fi security >>

disLEXia, a research project by Maximillian Dornseif


July 2003
 
Mo Tu We Th Fr Sa Su
1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 31
Jun

Search: