Re: IE https certificate attack

From: Kevin van Haaren (kevin@vanhaaren.net)
Date: 12/25/01


Date: Tue, 25 Dec 2001 12:10:54 -0600
To: bugtraq@securityfocus.com
From: Kevin van Haaren <kevin@vanhaaren.net>

At 3:37 PM +0100 12/22/01, security@e-matters.de wrote:
>Proof of Concept:
>
> A proof of concept webpage was put up at http://suspekt.org. Clicking
> onto the "To the secure page..." link will send your browser to
> https://suspekt.org without IE warning you that the certificate was not
> issued onto that server.
>
> This is not a MIM but it has the same effect: IE will tell you a page is
> secure although the certificate is illegal and its possible for a third
> party (anyone who owns the given certificate) to decrypt your traffic in
> realtime.

I've tested the proof of concept page with both Internet Explorer
5.1.3 under Macintosh OS X 10.1.2 and Internet Explorer 5.0 under Mac
OS 9.2.2. Both browsers report problems with the security
certificate and prompt the user if they wish to continue.

Guess the issue is only complex under Windows operating systems 8-)

Kevin



Relevant Pages

  • Secured Sites
    ... How to troubleshoot secure sites in IE using windows xp ... Start Internet Explorer. ... Secured Web sites if your Windows user profile ...
    (microsoft.public.windowsxp.general)
  • Re: 128 bit Encryption
    ... >Problems accessing secure sites/ cannot install 128 bit ... >Troubleshooting Secure Sites in WinXP SP2 ... >Internet Explorer High Encryption Pack ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • RE: Configure Secure POP3
    ... To configure secure POP3 connection for PDAs, MAC etc, please refer to the ... We can assign the certificate is created by the CEICW. ...
    (microsoft.public.windows.server.sbs)
  • Re: Setting passwords in ADAM
    ... LDAP over Secure Sockets Layer (SSL) will be unavailable at this time ... because the server was unable to obtain a certificate. ... >> adam instance and it is able to set passwords as well, ...
    (microsoft.public.windows.server.active_directory)
  • Re: Secure TN3270
    ... Subject: Secure TN3270 ... Point the PROFILE DD statement to the telnet parameter member ... We got a certificate from THAWTE. ... Search the archives at http://bama.ua.edu/archives/ibm-main.html ...
    (bit.listserv.ibm-main)