Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 25, 2013, 05:29:19 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
664036
Posts
70630
Topics
145257
Members
Latest Member:
nltdbsss
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
General Category
General Discussion (off topic) Anything and everything...
Verisign got hacked but didn't tell anyone!!!!
« previous
next »
Pages:
[
1
]
Author
Topic: Verisign got hacked but didn't tell anyone!!!! (Read 2753 times)
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12914
Verisign got hacked but didn't tell anyone!!!!
«
on:
February 02, 2012, 10:01:22 AM »
http://finance.yahoo.com/news/Key-Internet-operator-rb-2857339070.html?x=0
http://verisignhacked.tumblr.com/
«
Last Edit: February 03, 2012, 09:23:58 AM by Melih
»
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
kitmub
Comodo Loves me
Offline
Posts: 115
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #1 on:
February 02, 2012, 10:44:45 AM »
wow
first its norton now is verisign what will be next and what will the virtual population do now
but then again there always a chance of something or someone bypassing security
the question that matters is how much and what was compromised,
though reputation gives a really high pressure for anyone
and im not good in high pressure or quick thinking
Logged
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12914
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #2 on:
February 02, 2012, 01:07:33 PM »
the important thing is "trust"...
to earn trust, you have to be transparent.
its a shame that Verisign chose not to be transparent.
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
w-e-v
Star Group
Comodo's Hero
Offline
Posts: 1086
BETA FORCE MEMBER
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #3 on:
February 02, 2012, 02:31:59 PM »
I think its time for COMODO to innovate.
The article talks about many people thinking that SSL certificates is not a secure mechanism anymore (I save my personal opinion on this subject).
Guess with the trust COMODO have earned, its a good candidate to propose.
Logged
HeffeD
Global Moderator
Comodo's Hero
Offline
Posts: 6573
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #4 on:
February 02, 2012, 02:35:09 PM »
Quote from: Melih on February 02, 2012, 01:07:33 PM
its a shame that Verisign chose not to be transparent.
It's a bit scary when you think about it.
Logged
Please read the
Forum Policy
!
Breast Cancer Awareness
American Cancer Society
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12914
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #5 on:
February 02, 2012, 03:14:57 PM »
Quote from: HeffeD on February 02, 2012, 02:35:09 PM
It's a bit scary when you think about it.
This is why Comodo is the Trusted brand now, because we are always transparent and honest with our users.
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
axl
Comodo's Hero
Offline
Posts: 483
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #6 on:
February 02, 2012, 03:45:13 PM »
Quote from: Melih on February 02, 2012, 03:14:57 PM
This is why Comodo is the Trusted brand now, because we are always transparent and honest with our users.
Melih, you make good product but no business is always transparent with its customers.
Logged
Radaghast
Star Group
Comodo's Hero
Offline
Posts: 4040
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #7 on:
February 02, 2012, 04:53:27 PM »
This is pretty extraordinary reading, basically, Verisign got hacked two years ago, they have no idea how badly, or what was stolen/changed/left behind. Management f****d up by not reporting it sooner and to cover their collective butts, they point fingers at poor reporting structures and the worker bees. Urm! Hello! we're talking Root server gatekeeper here! I think there needs to be some pretty hard questions asked here.
Logged
“Don’t worry if it doesn’t work right. If everything did, you’d be out of a job.”
Radaghast
Star Group
Comodo's Hero
Offline
Posts: 4040
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #8 on:
February 03, 2012, 01:26:42 AM »
VeriSign admits multiple hacks in 2010 , keeps details under wraps ...
Quote
Tantry said one source had told him that a root certificate had, in fact, been compromised.
Quote
Symantec declined to comment further on the VeriSign hacking admission.
Logged
“Don’t worry if it doesn’t work right. If everything did, you’d be out of a job.”
MartiusD
Comodo Family Member
Offline
Posts: 80
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #9 on:
February 03, 2012, 09:04:28 AM »
The article at
http://features.techworld.com/security/3317789/ssl-certificates-under-fire-as-hacking-incidents-pile-up/
gives a good idea of the current state-of-play.
It has already been demonstrated that SSL can be hacked
without
using fraudulent certificates. See
http://forums.comodo.com/general-discussion-off-topic-anything-and-everything/hackers-break-ssltls-encryption-t76556.0.html
I doubt that anything will change until a really serious hack occurs. So far the band-aid fix when (and if) a hack is reported is to revoke certificates issued by the hacked company. Unfortunately this takes time to implement and has allowed fraudulent use of certificates to occur. If a really large number of certificates had to be revoked there would be total chaos trying to securely access large numbers of sites, and not revoking them would be a very high risk alternative. This problem has been in the too-hard basket for many years, because it was claimed to be only a "theoretical vulnerability" before hacks actually started to happen.
The bottom line is that
no amount of checks and digital signing can make the current SSL mechanism 100% secure
because no company authorised to issue them can guarantee its servers are 100% hacker-proof, or that all its employees are 100% trustworthy.
Does anyone know of any serious alternatives to SSL being developed? I haven't heard of any, but I am not a security expert.
Assuming no decent SSL alternative is in the pipeline I would suggest that Comodo and other major security companies should get together to offer a large prize (e.g. $10 million) to anyone who can come up with a real and workable solution to providing secure connections.
Logged
Melih
CEO - Comodo
Administrator
Comodo's Hero
Offline
Posts: 12914
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #10 on:
February 03, 2012, 09:23:48 AM »
http://verisignhacked.tumblr.com/
Logged
Who is Melih? What is he trying to do?
--
Follow me on Twitter
brightness
Comodo Loves me
Offline
Posts: 153
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #11 on:
February 04, 2012, 01:17:53 AM »
So what do this mean to us end-users?
Does it mean that when we see a site with a Versign certificate we shouldn't trust it?
Logged
JamesFrance
Comodo's Hero
Offline
Posts: 1250
Re: Verisign got hacked but didn't tell anyone!!!!
«
Reply #12 on:
February 04, 2012, 07:23:22 AM »
This is getting a wider exposure.
Quote
VeriSign boasts of over 110m registered domains. The subversion of just one of these could affect millions of consumers, government agencies and corporate web users in a single day. This ought to have prompted the company to alert its partners immediately, to limit any potential damage. Burying the breach under the mountain of impenetrable prose in a securities filing will be a blot on VeriSign's otherwise spotless record for years to come.
http://www.economist.com/blogs/babbage/2012/02/internet-security?fsrc=gn_ep&google_editors_picks=true
Logged
James
Tags:
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.075 seconds with 20 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com