Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: Full Disclosure: Full-Disclosure

SSL/TLS MiTM PoC

 

 

Full Disclosure full-disclosure RSS feed   Index | Next | Previous | View Threaded


peak at argo

Nov 5, 2009, 1:54 PM

Post #1 of 2 (288 views)
Permalink
SSL/TLS MiTM PoC

It might not work with up-to-date OpenSSL.
Fixing that is left as an exercise for the reader.

--
Pavel Kankovsky aka Peak / Jeremiah 9:21 \
"For death is come up into our MS Windows(tm)..." \ 21st century edition /
Attachments: ssl.c (9.02 KB)


akurmus at gmail

Nov 11, 2009, 1:07 PM

Post #2 of 2 (205 views)
Permalink
Re: SSL/TLS MiTM PoC [In reply to]

This flaw has been considered as unlikely to be exploited for HTTPS,
as it only allows the attacker to inject prefixes. By changing the
"trick" given by Marsh Ray, the attacker can increase his
possibilities. More detail, and an example of the use of a slightly
modified version of this PoC to steal twitter credentials over an SSL
link: http://securegoose.org/2009/11/tls-renegotiation-vulnerability-cve.html

Cheers,

Anıl Kurmuş
---------------
GPG key:
http://perso.telecom-paristech.fr/~kurmus/key



On Thu, Nov 5, 2009 at 22:54, Pavel Kankovsky
<peak [at] argo> wrote:
> It might not work with up-to-date OpenSSL.
> Fixing that is left as an exercise for the reader.
>
> --
> Pavel Kankovsky aka Peak                          / Jeremiah 9:21        \
> "For death is come up into our MS Windows(tm)..." \ 21st century edition /
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Full Disclosure full-disclosure RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact lists@gossamer-threads.com
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.