Anonymous remailer wrote:
> 
> Michael Pogrebisky <[EMAIL PROTECTED]> wrote:
> > We've found a way to add any arbitrary CA certificate into certificate
> > database of Netscape Communicator (on Win32 only) in a way completely
> > transparent to users. I mean, no UI warnings or questions at all.
> > If anyone is interested, I can e-mail the code.
> >
> > P.S. Please, note, this is potentially very dangerous tool!
> >
> > Michael.
> 
> If you'll mail it to anyone who's interested, why not just post
> the code to the list so we can all see it?  Geez.
> 
> ______________________________________________________________________
> OpenSSL Project                                 http://www.openssl.org
> User Support Mailing List                    [EMAIL PROTECTED]
> Automated List Manager                           [EMAIL PROTECTED]

That could be a VERY BIG problem for the Win people because they can not
choose to trust or not the connection: I mean they are not presented with
wornings and so on...

You should report as a bug to the Netscape people.

C'you,

        Massimiliano Pala ([EMAIL PROTECTED])
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to