Re: StartEncrypt considered harmful today

2016-06-30 Thread Juergen Christoffel
On 30.06.16 18:24, Phillip Hallam-Baker wrote: What makes something easy to hack in Perl does not make for good security architecture. Bad design, engineering or implementation is not primarily a problem of the language used. Or we would never have seen buffer overflows in C. Please castigate

Re: Tightening up after the Lenovo and Comodo MITM certificates.

2015-02-24 Thread Juergen Christoffel
On 23.02.15 22:39, John Nagle wrote: With the Lenovo and Comodo disclosures, the restrictions on loading new certificates into Firefox clients need to be tightened. The MITM-Ad/Malware installed via the Windows Certificate Store and not into browsers, so I cannot follow your conclusion.