Welcome, Guest. Please login or register.
Did you miss your activation email?
June 19, 2013, 01:22:05 AM

Login with username, password and session length

668810 Posts
71126 Topics
145740 Members

Latest Member: sushil kumar

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Learn about Computer Security and Interact with Security Experts
| |-+  Leak Testing/Attacks/Vulnerability Research
| | |-+  Digital Signature Hacks
« previous next »
Pages: [1] Go Down Print
Author Topic: Digital Signature Hacks  (Read 5458 times)
DonZ
Comodo's Hero
*****
Offline Offline

Posts: 430


Digital Signature Hacks
« on: July 19, 2010, 03:45:35 PM »

Now that digital signatures have been hacked in the wild, I am curious as to Comodo's response to this.

I am specifically concerned about Comodo's CIS "whitelisting" capability. I assume they use digitial signatures in this feature to verifiy applications?

In particular does Defense+ use digital signatures to verify "safe" applications?
Logged
SiberLynx
Comodo's Hero
*****
Offline Offline

Posts: 2163



Re: Digital Signature Hacks
« Reply #1 on: July 21, 2010, 06:17:44 AM »

Now that digital signatures have been hacked in the wild, I am curious as to Comodo's response to this.

I am specifically concerned about Comodo's CIS "whitelisting" capability. I assume they use digitial signatures in this feature to verifiy applications?
In particular does Defense+ use digital signatures to verify "safe" applications?
Hi DonZ ,
Please read this & below & some other threads re:the matter  
https://forums.comodo.com/general-discussion-off-topic-anything-and-everything/why-cis-premium-is-superior-t57616.0.html;msg404852#msg404852

Many new "funny" things are coming  Wink... rest assured

Cheers!
Logged

admin; XP Pro, SP3 (32bit); CIS 3.14.130099.587 (firewall only; Proactive with Defense+)- that is the only Comodo's thing I need; Emsisoft - Mamutu Behavioural Blocker or Full EAM
Win 7 x64: Comodo Firewall 3.14; Emsisoft Anti-Malware
DonZ
Comodo's Hero
*****
Offline Offline

Posts: 430


Re: Digital Signature Hacks
« Reply #2 on: July 21, 2010, 05:21:09 PM »

Perhap Melih didn't see this: http://www.sophos.com/blogs/sophoslabs/?p=10078
Logged
SiberLynx
Comodo's Hero
*****
Offline Offline

Posts: 2163



Re: Digital Signature Hacks
« Reply #3 on: July 21, 2010, 06:39:25 PM »

Thanks for the reply, DonZ

Well, I am sure Melih have seen that already  Smiley ... but anyway thanks for the link

It's just interesting that questioning of "dig sigs" & creating huge trusted list  Huh was done way & long before ... but  Roll Eyes

Cheers!
Logged

admin; XP Pro, SP3 (32bit); CIS 3.14.130099.587 (firewall only; Proactive with Defense+)- that is the only Comodo's thing I need; Emsisoft - Mamutu Behavioural Blocker or Full EAM
Win 7 x64: Comodo Firewall 3.14; Emsisoft Anti-Malware
Melih
CEO - Comodo
Administrator
Comodo's Hero
*****
Online Online

Posts: 12944



WWW
Re: Digital Signature Hacks
« Reply #4 on: July 21, 2010, 08:06:20 PM »

unfortunately Verisign (and Equifax, which is also a Verisign owned Root Key under Geotrust) are notoriously slow at responding. just check www.ccssforum.com malware section to see...

Melih
Logged

Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.053 seconds with 21 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com