OpenSSL is written by monkeys (2009)
peereboom.us
OpenSSL is written by monkeys (2009)
1–10 of 188 posts
Re: OpenSSL is written by monkeys (2009)
#2I'm getting a certificate warning on Chrome 33.0.1750.152. Is there a security corollary to Muphry's law?[1]
Re: OpenSSL is written by monkeys (2009)
#3I seriously wonder what else is hidden in the mess called OpenSSL. And especially how much of the bugs are known by the NSA.
Something like Heartbleed would definitely make a live-injection attack feasible!
Re: OpenSSL is written by monkeys (2009)
#4I'm getting a certificate warning on Chrome 33.0.1750.152. Is there a security corollary to Muphry's law?[1] [1] - http://en.wikipedia.org/wiki/Muphry's_law
The cert is self-signed, that's why Chrome gives the warning.
Re: OpenSSL is written by monkeys (2009)
#5Re: OpenSSL is written by monkeys (2009)
#6put the text up in a gist, to get around the dodgy cert.
Re: OpenSSL is written by monkeys (2009)
#7Re: OpenSSL is written by monkeys (2009)
#8I'm going to assume "monkeys" is a poor translation from another language. Maybe it's supposed to say "OpenSSL is written by fuzzy hackers". It's impossible to tell without accepting a self-signed certificate I have no means of validating.
The irony is delicious, much like a banana.
Re: OpenSSL is written by monkeys (2009)
#9Be security conscious folks. Don't click through to a site with a self-signed cert.
Re: OpenSSL is written by monkeys (2009)
#10Be security conscious folks. Don't click through to a site with a self-signed cert.
There is nothing wrong with self-signed certificates. If you need to trust a website that uses self-signed certificates, just make sure to verify out-of-band.