Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread Randall Webmail
From: "Ralf-Philipp Weinmann" >Thank you, dear flame authors, for providing an implementation for my >idea! Now, how should I cite you? Just cite "NSA".Don't worry, they'll know about it ... ___ cryptography mailing list cryptography@randombit.net

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread Ralf-Philipp Weinmann
On 6/11/12 6:38 PM, Ondrej Mikle wrote: > On 06/11/2012 11:06 AM, Ben Laurie wrote: >> On Mon, Jun 11, 2012 at 1:56 AM, Nico Williams wrote: >>> On Sun, Jun 10, 2012 at 3:03 PM, Florian Weimer wrote: * Marsh Ray: > Marc Stevens and B.M.M. de Weger (of > http://www.win.tue.nl/has

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread Ondrej Mikle
On 06/11/2012 11:06 AM, Ben Laurie wrote: > On Mon, Jun 11, 2012 at 1:56 AM, Nico Williams wrote: >> On Sun, Jun 10, 2012 at 3:03 PM, Florian Weimer wrote: >>> * Marsh Ray: >>> Marc Stevens and B.M.M. de Weger (of http://www.win.tue.nl/hashclash/rogue-ca/) have been looking at the

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread The Fungi
On 2012-06-10 17:33:51 -0500 (-0500), Marsh Ray wrote: [...] > e2 - attacker bribes Microsoft personnel into issuing evil cert [...] It doesn't seem entirely outside the realm of possibility since this was found in the wild in Flame, which in turn is suspected to be a state-sponsored cyber e

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread Erwann Abalea
2012/6/11 Ben Laurie > On Mon, Jun 11, 2012 at 1:56 AM, Nico Williams > wrote: > > On Sun, Jun 10, 2012 at 3:03 PM, Florian Weimer > wrote: > >> * Marsh Ray: > >> > >>> Marc Stevens and B.M.M. de Weger (of > >>> http://www.win.tue.nl/hashclash/rogue-ca/) have been looking at the > >>> collision

Re: [cryptography] Microsoft Sub-CA used in malware signing

2012-06-11 Thread Ben Laurie
On Mon, Jun 11, 2012 at 1:56 AM, Nico Williams wrote: > On Sun, Jun 10, 2012 at 3:03 PM, Florian Weimer wrote: >> * Marsh Ray: >> >>> Marc Stevens and B.M.M. de Weger (of >>> http://www.win.tue.nl/hashclash/rogue-ca/) have been looking at the >>> collision in the evil CN=MS cert. I'm sure they'll