|
Comodo SSL Certificates Safe from Black Hat Briefings Vulnerabilities
Jersey City, NJ, August 18, 2009 - Certificates issued by Comodo are prey neither to the "Null Character attack" nor to the "MD2 vulnerability" recently revealed at the Black Hat Briefings in Las Vegas.
Moxie Marlinspike's "Null Character attack" tricks a vulnerable CA into issuing a certificate that includes a \0 character (NULL) within the domain name. This allows the attacker to fool a vulnerable web browser into trusting the certificate for a domain name that the CA did not validate. Comodo's CA systems have never been vulnerable to this attack.
Dan Kaminsky's "MD2 vulnerability" warns that pre-image attacks against the MD2 hash algorithm are likely to become possible within months. This would allow an attacker to construct trusted certificates that appear to have been issued by a trusted CA certificate that has an MD2-based digital signature. Comodo have never used the MD2 algorithm, so our CA systems and our customers' certificates will not be affected.
"Comodo is proud to announce that none of its certificates are vulnerable to either threat," said Melih Abdulhayoglu, CEO and Chief Security Architect of Comodo, the largest issuer of high-assurance digital certificates. "The study is interesting, but, fortunately, it does not apply to Comodo's certificates."
About the Black Hat Briefings
The Black Hat Briefings is a regular industry gathering of computer security and government professionals, as well as respected hackers. http://www.blackhat.com/
About Comodo
Comodo is a leading brand in Internet security, covering an extensive range of security software and services, including digital certificates, PCI scanning, desktop security, online faxing, and computer technical support services.
Business and consumers worldwide recognize Comodo as standing for security and trust. Comodo products secure and authentic online transactions for over 200,000 business and have more than 18,000,000 installations of Comodo desktop security software, including an award-winning firewall and antivirus software offered at no charge.
The Comodo family of companies is committed to continual innovation, core competencies in PKI, authentication, and malware detection and prevention. As a catalyst in eliminating online crime, the companies' mission is to establish a Trusted Internet.
With US headquarters overlooking Manhattan on New Jersey's waterfront and global resources in United Kingdom, China, India, Ukraine, and Romania, Comodo products offer intelligent security, authentication, and assurance.
Comodo -- Creating Trust Online®. For more information, visit Comodo's website.
Company: comodo
|
| Related press releases |
Comodo SSL Certificates Safe from Black Hat Briefings Vulnerabilities [2009-08-17 23:58:37]
Jersey City, NJ, August 18, 2009 - Certificates issued by Comodo are prey neither to the "Null Character attack" nor to the "MD2 vulnerability" recently revealed at the Black Hat Briefings in Las Vega...
|
|
Comodo SSL Certificates Not Affected By MD5 Flaw [2009-01-08 05:28:16]
Jersey City, NJ, January 8, 2009 - Comodo CA Limited, the second-largest issuer of high-assurance digital certificates, today announced that none of its certificates is created using the MD5 hash func...
|
|
Comodo Email Certificates are Vista and Firefox Compatible [2007-07-25 23:51:04]
Comodo Email Certificates are Vista and Firefox Compatible
New compatibility makes these Email certificates available to many new users and remains free of charge
Jersey City, NJ (July 26, 2007) -...
|
|
Comodo to Continue Free Email Certificates for Personal Use [2009-10-21 00:00:46]
Jersey City, NJ, October 20, 2009 - "Comodo continues its commitment to free email security," said Abdulhayoglu, the Chief Security Architect at Comodo. "We care for end users. We won't abandon them."...
|
|
Comodo Digital Certificate Reporting Simplifies Inventory [2009-04-07 03:19:01]
Jersey City, NJ, April 07, 2009 - Some of the world's largest companies still use spreadsheets to track their inventories of digital certificates. Even if IT departments use purpose-built certificate ...
|
|
Uplinkearth Partners with Comodo to Provide SSL Certificates, such as the Newly ... [2007-09-25 22:54:15]
JERSEY CITY, N.J., September 26, 2007 - Uplinkearth, an award winning Web hosting and Internet solutions provider for small to medium sized businesses and Comodo, a leading Certification Authority, an...
|
|
Comodo’s HackerProof Service Helps Protect Visitor Information On Ecommerce We... [2008-05-22 12:03:50]
Vulnerability scanning services helps keep servers safe from hackers who steal people's sensitive information
Jersey City, NJ (May 22, 2008) - ComputerWorld recently reported on the spread of a wor...
|
|
Interactive flash game! 1 year SafenSec license per each 5500 points! [2006-05-22 00:00:00]
June 1, 2006. S.N. Safe&Software Ltd. announces interactive flash game starting on June 1 till June 30 on www.safensoft.com. The participants will get SafenSec PC proactive protection one year licen...
|
|
Is your server secure? Find out for sure with HackerGuardian [2005-07-14 00:00:00]
Comodo edge the totally secure e-commerce environment closer to reality with free remote vulnerability audits
New York 14th July 2005 Comodo, the internet security specialists, today added HackerGuar...
|
|
Comodo Webinar Educates Aspiring Amazons [2009-02-03 03:30:57]
Jersey City, NJ, February 03, 2009 - A February 12 online seminar presented by Comodo will tell emerchants how to build their customer bases by increasing customer trust.
The webinar will explain t...
|
|
|
|
| SecuKEEPER |
Are your data safe?SecuKEEPER is an ALL-IN-ONE file encryption software design to secure your files and folders from prying eyes, which designing four protection method(hide/rapidly lock/encrypt/private coffer). Furthermore offer Password Manager. |
|
| AmphiSoft Photo Tinter |
Photoshop plugin for copying photo tone from toned black and white photos to new images. Filter extract and save tone map of your favorite masterpiece and allow you to reapply it to another photo. |
|
| Wise Registry Cleaner 4 Free |
Wise Registry Cleaner is one of the safest Registry cleaning tools available in the market today. Its scanning engine is thorough, safe and fast.Even the least experienced user can easily repair registry with this tool. |
|
| Stock Works |
Stock Works is Shareholder/Stock Certificate Tracking Software for the Small Business Corporation. If you track stockholders and stock certificates for the small business corporation, then use Stock Works to spend minutes to save yourself hours. |
|
|