Enter the 36 chambers of infrastructure wu-tang

Tuesday, June 10, 2008

SSLv2 still considered harmful

Some argue that, although it is deeply flawed, SSLv2 is better than nothing and some very old clients don't support anything better. This is true in the same way that a beautiful lie is better than an ugly truth. I'm an ugly truth kind of guy. What about you?

From 2005: SSL V2 SNAFU

No doubt, everyone is patched up by now and no other such vulnerabilities are present, waiting to be discovered. No doubt.

