Stories
Slash Boxes
Comments
typodupeerror delete not in

+-   Why one-time passwords suck for MITM attacks-> on Monday August 18 2008, @01:22PM whitehartstag

Submitted by whitehartstag on Monday August 18 2008, @01:22PM
security
whitehartstag writes "Black Hat 08 disclosed several SSL VPN and DNS vulnerabilities that caused several people to sit up and take notice. Some of these new exploits performed a brilliant Man-In-The-Middle attack on SSL VPN tunnels. This article walks you through how using certificates, instead of OTP tokens for second-factor authentication can increase the security of your SSL VPN against these new types of attacks."
Link to Original Source
submission

This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
 Full
 Abbreviated
 Hidden
More
Loading... please wait.
Coincidences are spiritual puns. -- G.K. Chesterton