Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- From: "privacy concerned" <privacyconcerned@xxxxxxxxx>
- Date: 22 Jun 2006 16:37:35 -0700
Sebastian Gottschalk wrote:
privacy concerned wrote:"You" means Yahoo Mail users. Most of Yahoo Mail users do not use
[a big long and totally unnecessary fullquote snipped]
Wow! Should you start encrypting emails in your Yahoo Mail account now?
No. You should already do so.
encryption yet.
No problem. The receiver uses the EaSecure standalone client to decrypt
You can do this easily using EaSecure available at
http://www.easecure.com/ .
But isn't encryption about actual security? And damn, what about the
receiver? He must be able to decrypt it as well.
the message. EaSecure message is an ".eas" attachment. You can use the
EaSecure standalone client to open the ".eas" attachment. Most of Yahoo
Mail users do not have an SMTP server. EaSecure provides an SMTP server
for sending EaSecure messages using the steandalone client.
You don't have to trust me, but if you are going to use encryption at
Beside that, once again, you're about the last guy I would trust on
security: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET
CLR 1.0.3705; .NET CLR 1.1.4322)
all, you need to trust some vendor for providing you the software,
unless you write your own code from scratch.
.
- Follow-Ups:
- References:
- Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- From: rajesh . sethumadhava
- Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- From: privacy concerned
- Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- From: Sebastian Gottschalk
- Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- Prev by Date: Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- Next by Date: Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- Previous by thread: Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- Next by thread: Re: Yahoo Multiple Vulnerabilities ( Authentication Bypass, Session Binding, Cookie Encoding Security Weakness, Cross-Site Scripting and URL Redirection )
- Index(es):
Relevant Pages
|