MD5 Considered harmful today - Creating a rogue CA certificate
Rather than paraphrase the content of the presentation made at the CCC, use the following link to read about the gory detail - as provided by the authors themselves:
http://www.win.tue.nl/hashclash/rogue-ca/
UPDATE: A copy of the presentation slide deck is available here:
http://www.phreedom.org/research/rogue-ca/md5-collisions-1.0.ppt
UPDATE: Microsoft have issued a Security Advisory (961509) here:
http://www.microsoft.com/technet/security/advisory/961509.mspx
UPDATE: Thanks to reader Juha-Matti for these additional links pertaining to today's annoucement:
Mozilla's Security Blog response:
http://blog.mozilla.com/
Microsoft Security Vulnerability Research & Defense (SVRD) Blog response:
http://blogs.technet.com/swi/
Comments