<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: RSA-512 Certificates abused in the wild</title>
	<atom:link href="http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/</link>
	<description>News and opinions from Fox-IT</description>
	<lastBuildDate>Sun, 19 May 2013 06:07:16 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: .blog &#187; Archiv &#187; Slabé RSA kľúče v TLS a DNSSEC</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-342</link>
		<dc:creator><![CDATA[.blog &#187; Archiv &#187; Slabé RSA kľúče v TLS a DNSSEC]]></dc:creator>
		<pubDate>Thu, 26 Jul 2012 11:30:06 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-342</guid>
		<description><![CDATA[[...] môžu predstavovať bezpečnostné riziko, sa za posledný rok objavilo viacero. Autori malware zneužili slabé 512-bitové RSA kľúče z certifikátov, ktoré mali vhodnú kombináciu X.509v3 extensions a podpisovali nimi malware. Útočníci v tomto [...]]]></description>
		<content:encoded><![CDATA[<p>[...] môžu predstavovať bezpečnostné riziko, sa za posledný rok objavilo viacero. Autori malware zneužili slabé 512-bitové RSA kľúče z certifikátov, ktoré mali vhodnú kombináciu X.509v3 extensions a podpisovali nimi malware. Útočníci v tomto [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: .blog &#187; Archiv &#187; Malware podepsán &#8222;od Microsoftu&#8220;</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-300</link>
		<dc:creator><![CDATA[.blog &#187; Archiv &#187; Malware podepsán &#8222;od Microsoftu&#8220;]]></dc:creator>
		<pubDate>Fri, 08 Jun 2012 14:00:23 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-300</guid>
		<description><![CDATA[[...] i když naštěstí pořád rarita &#8211; viděli jsme to u ukradených certifikátů (Stuxnet) a certifikátů se slabými faktorizovatelnými klíči. A teď ještě přibyl případ, kde se malware tvářil, jako by byl podepsán přímo od [...]]]></description>
		<content:encoded><![CDATA[<p>[...] i když naštěstí pořád rarita &#8211; viděli jsme to u ukradených certifikátů (Stuxnet) a certifikátů se slabými faktorizovatelnými klíči. A teď ještě přibyl případ, kde se malware tvářil, jako by byl podepsán přímo od [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cryptography: Was RSA 512 ever widely used? - Quora</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-280</link>
		<dc:creator><![CDATA[Cryptography: Was RSA 512 ever widely used? - Quora]]></dc:creator>
		<pubDate>Mon, 28 May 2012 19:04:22 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-280</guid>
		<description><![CDATA[[...] &#160;&#160;&#160;Michael Hamburg,  cryptography PhDIt&#039;s still occasionally used.&#160; http://blog.fox-it.com/2011/11/2...Comment Loading... &#8226; Post &#8226; 12:04pm &#160;Add [...]]]></description>
		<content:encoded><![CDATA[<p>[...] &nbsp;&nbsp;&nbsp;Michael Hamburg,  cryptography PhDIt&#039;s still occasionally used.&nbsp; <a href="http://blog.fox-it.com/2011/11/2" rel="nofollow">http://blog.fox-it.com/2011/11/2</a>&#8230;Comment Loading&#8230; &bull; Post &bull; 12:04pm &nbsp;Add [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 512-bit Certificates Abused in the Wild - Identity On</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-153</link>
		<dc:creator><![CDATA[512-bit Certificates Abused in the Wild - Identity On]]></dc:creator>
		<pubDate>Thu, 12 Apr 2012 15:52:38 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-153</guid>
		<description><![CDATA[[...] malware used in a spear-phishing attack was signed using 512-bit RSA Web server certificates. In a recent blog post from FOX-IT, it was confirmed that the abused certificates were issued by more than one CA to more than one [...]]]></description>
		<content:encoded><![CDATA[<p>[...] malware used in a spear-phishing attack was signed using 512-bit RSA Web server certificates. In a recent blog post from FOX-IT, it was confirmed that the abused certificates were issued by more than one CA to more than one [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SSL Certificate Baseline Requirements 1.0 - Identity On</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-151</link>
		<dc:creator><![CDATA[SSL Certificate Baseline Requirements 1.0 - Identity On]]></dc:creator>
		<pubDate>Thu, 12 Apr 2012 14:39:35 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-151</guid>
		<description><![CDATA[[...] by attacking third-party registration authorities. Most recently, due to a spear-phishing attack, some SSL CAs were found to be issuing certificates with weak 512-bit keys. All of these short-comings have either been addressed directly or mitigated in the [...]]]></description>
		<content:encoded><![CDATA[<p>[...] by attacking third-party registration authorities. Most recently, due to a spear-phishing attack, some SSL CAs were found to be issuing certificates with weak 512-bit keys. All of these short-comings have either been addressed directly or mitigated in the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael Sandee</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-89</link>
		<dc:creator><![CDATA[Michael Sandee]]></dc:creator>
		<pubDate>Wed, 04 Jan 2012 23:37:07 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-89</guid>
		<description><![CDATA[Yeah, after I wrote the blog a colleague noticed me, kind of a slap in face moment. To date I haven&#039;t though, will post a comment if I have.]]></description>
		<content:encoded><![CDATA[<p>Yeah, after I wrote the blog a colleague noticed me, kind of a slap in face moment. To date I haven&#8217;t though, will post a comment if I have.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-88</link>
		<dc:creator><![CDATA[mac]]></dc:creator>
		<pubDate>Tue, 03 Jan 2012 21:12:41 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-88</guid>
		<description><![CDATA[&gt;&gt; &quot;We are however unable to verify this as the relevant certificate has expired in April 2011&quot;

Couldn&#039;t you just &quot;go back in time&quot; on your workstation by adjusting the time and date? Seems all other checks are off anyway.]]></description>
		<content:encoded><![CDATA[<p>&gt;&gt; &#8220;We are however unable to verify this as the relevant certificate has expired in April 2011&#8243;</p>
<p>Couldn&#8217;t you just &#8220;go back in time&#8221; on your workstation by adjusting the time and date? Seems all other checks are off anyway.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: HitmanPro 3.6 &#171;</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-85</link>
		<dc:creator><![CDATA[HitmanPro 3.6 &#171;]]></dc:creator>
		<pubDate>Fri, 23 Dec 2011 14:48:02 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-85</guid>
		<description><![CDATA[[...] NEW: Added detection for files signed with weak Authenticode signatures (RSA 512-bit keys). See also: http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/ [...]]]></description>
		<content:encoded><![CDATA[<p>[...] NEW: Added detection for files signed with weak Authenticode signatures (RSA 512-bit keys). See also: <a href="http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/" rel="nofollow">http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SSL Certificate Baseline Requirements 1.0 &#171; SSL Blog - Entrust Insights</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-65</link>
		<dc:creator><![CDATA[SSL Certificate Baseline Requirements 1.0 &#171; SSL Blog - Entrust Insights]]></dc:creator>
		<pubDate>Wed, 14 Dec 2011 14:21:56 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-65</guid>
		<description><![CDATA[[...] by attacking third-party registration authorities. Most recently, due to a spear-phishing attack, some SSL CAs were found to be issuing certificates with weak 512-bit keys. All of these short-comings have either been addressed directly or mitigated in the [...]]]></description>
		<content:encoded><![CDATA[<p>[...] by attacking third-party registration authorities. Most recently, due to a spear-phishing attack, some SSL CAs were found to be issuing certificates with weak 512-bit keys. All of these short-comings have either been addressed directly or mitigated in the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 512-bit Certificates Abused in the Wild &#171; SSL Blog - Entrust Insights</title>
		<link>http://blog.fox-it.com/2011/11/21/rsa-512-certificates-abused-in-the-wild/#comment-40</link>
		<dc:creator><![CDATA[512-bit Certificates Abused in the Wild &#171; SSL Blog - Entrust Insights]]></dc:creator>
		<pubDate>Mon, 28 Nov 2011 19:59:58 +0000</pubDate>
		<guid isPermaLink="false">http://blog.fox-it.com/?p=110#comment-40</guid>
		<description><![CDATA[[...] malware used in a spear-phishing attack was signed using 512-bit RSA Web server certificates. In a recent blog post from FOX-IT, it was confirmed that the abused certificates were issued by more than one CA to more than one [...]]]></description>
		<content:encoded><![CDATA[<p>[...] malware used in a spear-phishing attack was signed using 512-bit RSA Web server certificates. In a recent blog post from FOX-IT, it was confirmed that the abused certificates were issued by more than one CA to more than one [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
