Re: New article on root certificate problems with Windows

2007-07-21 Thread pgut001
Paul Hoffman [EMAIL PROTECTED] writes: At 2:45 AM +1200 7/20/07, [EMAIL PROTECTED] wrote: |From a security point of view, this is really bad. From a usability point of |view, it's necessary. As you can see from my list of proposed solutions, I disagree. I see no reason not to to alert a user

Re: New article on root certificate problems with Windows

2007-07-21 Thread Paul Hoffman
At 7:58 PM +1200 7/20/07, [EMAIL PROTECTED] wrote: Paul Hoffman [EMAIL PROTECTED] writes: At 2:45 AM +1200 7/20/07, [EMAIL PROTECTED] wrote: |From a security point of view, this is really bad. From a usability point of |view, it's necessary. As you can see from my list of proposed

Announcing DIMACS 2007-2010 Special Focus on Algorithmic Foundations of the Internet

2007-07-21 Thread Linda Casals
[Moderator's note: the Secure Routing focus may be of interest to some readers. --Perry] *** Announcing DIMACS 2007-2010 Special Focus on Algorithmic Foundations of the Internet

Re: New article on root certificate problems with Windows

2007-07-21 Thread Frank Siebenlist
(I don't have access to windoze... cannot verify if my suggestion would work...) Can't you replace the installed root certs with empty files or bogus content such that they will fail path validation and still trick MS not to re-install them? -Frank. Jeffrey Altman wrote: [EMAIL PROTECTED]

Re: Enigma for sale on eBay

2007-07-21 Thread Jeff . Hodges
[EMAIL PROTECTED] said: http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItemitem=270146164488 ebay now says (as of when this messge is sent): This Listing Is Unavailable This listing (270146164488) has been removed or is no longer available. Please make sure you entered the right

RE: How the Greek cellphone network was tapped.

2007-07-21 Thread bear
On Thu, 19 Jul 2007, Charles Jackson wrote: An earlier post, talking about vulnerabilities and the lack of an appropriate market response, said: We're talking about phone calls -- did all of the well-publicized cellular eavesdropping (Prince Charles, Newt Gingrich (then a major US

Re: How the Greek cellphone network was tapped.

2007-07-21 Thread Steven M. Bellovin
On Sat, 21 Jul 2007 04:46:51 -0700 (PDT) bear [EMAIL PROTECTED] wrote: On Thu, 19 Jul 2007, Charles Jackson wrote: An earlier post, talking about vulnerabilities and the lack of an appropriate market response, said: We're talking about phone calls -- did all of the

Re: How the Greek cellphone network was tapped.

2007-07-21 Thread bear
On Sat, 21 Jul 2007, Steven M. Bellovin wrote: Not as I read the statute (and of course I'm not a lawyer). Have a look at 18 USC 2512 (http://www4.law.cornell.edu/uscode/html/uscode18/usc_sec_18_2512000-.html) any person who intentionally ... manufactures, assembles,

Re: Enigma for sale on eBay

2007-07-21 Thread Steven M. Bellovin
On Fri, 20 Jul 2007 14:10:40 -0700 [EMAIL PROTECTED] wrote: [EMAIL PROTECTED] said: http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItemitem=270146164488 ebay now says (as of when this messge is sent): This Listing Is Unavailable This listing (270146164488) has been removed