Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 13:05:28 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1612203600&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Fpapers%2Fattack%2Fmd5-considered-harmful.pdf%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1612203600.1338210328.1338210328.1338210328.1%3B%2B__utmz%3D32867617.1338210328.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Whitepaper - MD5 Considered Harmful Today http://packetstormsecurity.org/files/73494/md5-considered-harmful.pdf http://packetstormsecurity.org/files/73494/md5-considered-harmful.pdf http://packetstormsecurity.org/files/73494/Whitepaper-MD5-Considered-Harmful-Today.html Wed, 31 Dec 2008 15:24:58 GMT MD5 Considered Harmful Today - Creating A Rogue CA Certificate. The authors of this paper have identified a vulnerability in the Internet Public Key Infrastructure (PKI) used to issue digital certificates for secure websites. As a proof of concept they executed a practical attack scenario and successfully created a rogue Certification Authority (CA) certificate trusted by all common web browsers. This certificate allows them to impersonate any website on the Internet, including banking and e-commerce sites secured using the HTTPS protocol.