[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Full-disclosure] Trustwave and Mozilla (Resolved)
- To: FunSec List <funsec@xxxxxxxxxxxx>, Full Disclosure <full-disclosure@xxxxxxxxxxxxxxxxx>
- Subject: [Full-disclosure] Trustwave and Mozilla (Resolved)
- From: Jeffrey Walton <noloader@xxxxxxxxx>
- Date: Wed, 22 Feb 2012 19:12:03 -0500
It appears to be official.
Trustwave issued MitM certificates, which is deceptive, unethical, and
contrary to its agreement for inclusion.
Mozilla just rewarded their violations of trust by continuing their
inclusion. Apparently, agreements between Mozilla and CAs have no
veracity as both are more than happy to violate the end user.
Original Bug: https://bugzilla.mozilla.org/show_bug.cgi?id=724929
NSS and Firefox Update: https://bugzilla.mozilla.org/show_bug.cgi?id=728617
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/