<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>.:SSLFail:. &#187; Site Related</title>
	<atom:link href="http://www.sslfail.com/category/site-related/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.sslfail.com</link>
	<description>1.2.840.113549.1.1</description>
	<lastBuildDate>Sat, 24 Jul 2010 14:50:23 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Server Outage</title>
		<link>http://www.sslfail.com/2009/10/server-outage/</link>
		<comments>http://www.sslfail.com/2009/10/server-outage/#comments</comments>
		<pubDate>Sun, 11 Oct 2009 17:34:01 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>
		<category><![CDATA[SecTor]]></category>
		<category><![CDATA[server fail]]></category>
		<category><![CDATA[sslfail.com]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=377</guid>
		<description><![CDATA[Anyone who tried to access SSLFail.com late last night or this morning would have noticed that it was down.  I apparently caused my own server outage with python. Here&#8217;s how it happened.
When sockstress was first discussed I was rather intrigued and thought about it for a bit, but then I quickly abandoned it&#8230; I just [...]]]></description>
			<content:encoded><![CDATA[<p>Anyone who tried to access SSLFail.com late last night or this morning would have noticed that it was down.  I apparently caused my own server outage with python. Here&#8217;s how it happened.</p>
<p>When <a href="http://blog.robertlee.name/2008/08/updates.html">sockstress</a> was first discussed I was rather intrigued and thought about it for a bit, but then I quickly abandoned it&#8230; I just had too many other things on my plate. However discussions at <a href="http://www.sector.ca/">SecTOR</a> renewed my interest in exploring how this tool worked. After a bit of googling, I found <a href="http://www.checkpoint.com/defense/advisories/public/announcement/090809-tcpip-dos-sockstress.html">this page</a> which gives an explanation of what is occurring, although I wasn&#8217;t sure if it was correct. It did, however, fit with the &#8216;TCP/IP Zero Window Size Vulnerability&#8217; in <a href="http://www.microsoft.com/technet/security/Bulletin/ms09-048.mspx">MS09-048</a>.</p>
<p>I decided I would code up the diagram on the Check Point page and see what happened when I tested it. I started writing in python using SOCK_RAW and was ready to send my first packet&#8230; or so I&#8217;d thought. I forgot to send an appropriate Ethernet header, which meant parsing the packet found garbage instead of a valid packet&#8230; and port security on on the switch found an invalid MAC address and quickly disabled the port. Which means no more using the SSLFail.com server for playing with raw sockets.</p>
<p>Anyways, everything is back up and running now.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/10/server-outage/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SSLFail Panel Interview on DarkReading</title>
		<link>http://www.sslfail.com/2009/10/sslfail-panel-interview-on-darkreading/</link>
		<comments>http://www.sslfail.com/2009/10/sslfail-panel-interview-on-darkreading/#comments</comments>
		<pubDate>Thu, 08 Oct 2009 21:53:56 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>
		<category><![CDATA[DarkReading]]></category>
		<category><![CDATA[SecTor]]></category>
		<category><![CDATA[sslfail.com]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=370</guid>
		<description><![CDATA[I just wanted to point to an awesome article from Kelly Jackson Higgins on DarkReading. I can call it awesome because it&#8217;s about the SSLFail panel at SecTOR and includes quite a bit of the information we shared with attendees, so for anyone not at SecTOR and not wanting to look at the raw data [...]]]></description>
			<content:encoded><![CDATA[<p>I just wanted to point to <a href="http://darkreading.com/security/vulnerabilities/showArticle.jhtml?articleID=220301548&amp;cid=RSSfeed">an awesome article</a> from Kelly Jackson Higgins on DarkReading. I can call it awesome because it&#8217;s about the SSLFail panel at <a href="http://www.sector.ca/">SecTOR</a> and includes quite a bit of the information we shared with attendees, so for anyone not at SecTOR and not wanting to look at the raw data (which is coming soon)&#8230; it provides an awesome overview. Mike and I really enjoyed the opportunity to sit down and talk with Kelly and had realized at the end of the call that we had a much better idea of what we were going to discuss on the panel than we did before the interview. So everyone who enjoyed the discussion points on the panel has Kelly to thank for that.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/10/sslfail-panel-interview-on-darkreading/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SSLFail.com Panel Follow-up</title>
		<link>http://www.sslfail.com/2009/10/sslfail-com-panel-follow-up/</link>
		<comments>http://www.sslfail.com/2009/10/sslfail-com-panel-follow-up/#comments</comments>
		<pubDate>Thu, 08 Oct 2009 20:14:13 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=368</guid>
		<description><![CDATA[I want to call the SSLFail.com panel at SecTOR a great success. We had a great time up there and if the audience participating was any indication (and it seems to be) then then it was a good time for everyone. We ended up talking so long that we were kicked out of the room [...]]]></description>
			<content:encoded><![CDATA[<p>I want to call the SSLFail.com panel at SecTOR a great success. We had a great time up there and if the audience participating was any indication (and it <a href="http://blog.foragesecurity.com/2009/10/sector-followup.html">seems to be</a>) then then it was a good time for everyone. We ended up talking so long that we were kicked out of the room because the next speaker needed to get on the stage to prepare for his presentation. So we migrated to the hallways and answered a few more questions. We also managed to have things to throw at the audience (vendor swag from <a href="http://www.ncircle.com/">nCircle</a> (t-shirts) and <a href="http://www.forescout.com/">ForeScout</a> (stress blocks)), so thank you to both vendors. I&#8217;m hoping that people took something way from the talk but if there are questions and follow-ups please feel free to contact us, email can be sent to treguly [at] sslfail [dot] com, and I&#8217;ll be more than happy to pass it along to the other panelists. I really think we gained as much, if not more, than the attendees and I expect there will be some blog posts posted here over the next few weeks to discuss various things.</p>
<p>For now, I just wanted to say thank you to everyone that skipped two amazing talks to sit through ours, it was definitely appreciated.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/10/sslfail-com-panel-follow-up/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SSLFail @ SecTor</title>
		<link>http://www.sslfail.com/2009/09/sslfail-sector/</link>
		<comments>http://www.sslfail.com/2009/09/sslfail-sector/#comments</comments>
		<pubDate>Thu, 01 Oct 2009 04:21:22 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>
		<category><![CDATA[SecTor]]></category>
		<category><![CDATA[sslfail.com]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=366</guid>
		<description><![CDATA[I&#8217;ve been a huge fan of SecTor since the first year it ran and have been fairly vocal about people attending. This year there&#8217;s an extra special reason to attend though, a couple of SSLFail.com bloggers will be doing a panel, we may even have a special guest join us. You&#8217;ll have to attend the [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been a huge fan of <a href="http://www.sector.ca/">SecTor</a> since the first year it ran and have been fairly vocal about people attending. This year there&#8217;s an extra special reason to attend though, a couple of SSLFail.com bloggers will be doing a panel, we may even have a special guest join us. You&#8217;ll have to attend the talk to find out.</p>
<p>As for the subject&#8230; we don&#8217;t really know. In fact we&#8217;re a week away from presenting and it&#8217;s still up in the air to some extent. From what I&#8217;ve heard you can expect Lolcats, interesting information and some survey results. Anyways, if you&#8217;re at SecTor and the Nsploit and Ghostnet talks are full (and I suspect they will be, I wanted to see both of them)&#8230; we&#8217;re the only option you have left &#8212; so come and join us!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/09/sslfail-sector/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SSLFail is SSL Enabled</title>
		<link>http://www.sslfail.com/2009/02/sslfail-is-ssl-enabled/</link>
		<comments>http://www.sslfail.com/2009/02/sslfail-is-ssl-enabled/#comments</comments>
		<pubDate>Tue, 17 Feb 2009 01:06:46 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>
		<category><![CDATA[sslfail.com]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=283</guid>
		<description><![CDATA[Update: A lot of people don&#8217;t like the idea of people issuing their own CA Certs&#8230; I saw some humour in a SSLFail CA cert that wasn&#8217;t shared. I also see no reason why SSL Certs should be as over priced as they are (that deserves it&#8217;s own blog post), so I won&#8217;t pay for [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Update</strong>: A lot of people don&#8217;t like the idea of people issuing their own CA Certs&#8230; I saw some humour in a SSLFail CA cert that wasn&#8217;t shared. I also see no reason why SSL Certs should be as over priced as they are (that deserves it&#8217;s own blog post), so I won&#8217;t pay for one for a blog. So&#8230; <strong>Install the CA cert at your own risk</strong>.</p>
<p>So there have been some comments about SSLFail not having an SSL version. I&#8217;ve fixed this today and you can now access SSLFail via https://www.sslfail.com. The CA is SSLFail so by defaut you&#8217;ll get an error (in Firefox the message will read: &#8216;The certificate is not trusted because the issuer certificate is unknown.&#8217; ). The SSLFail certificate is <a href="https://www.sslfail.com/ca/sslfail.crt">available for download</a>, should you wish to install it.</p>
<p>Should anyone want a cert signed by SSLFail, I&#8217;m more than willing to do so&#8230; simply email &#8212; treguly (at) sslfail (dot) com.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/02/sslfail-is-ssl-enabled/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SSLFail.com == SSL FAIL?</title>
		<link>http://www.sslfail.com/2009/01/sslfailcom-ssl-fail/</link>
		<comments>http://www.sslfail.com/2009/01/sslfailcom-ssl-fail/#comments</comments>
		<pubDate>Tue, 27 Jan 2009 18:02:48 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>
		<category><![CDATA[sslfail.com]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=225</guid>
		<description><![CDATA[We just received a link to our own site. It would appear that someone was looking and discovered that we don&#8217;t have a SSL Enabled site. This is very true, but we&#8217;re not a large company with tons of visitors (in fact we&#8217;re still at less than 1000 unique visitors) and we&#8217;re not asking you [...]]]></description>
			<content:encoded><![CDATA[<p>We just received a link to our own site. It would appear that someone was looking and discovered that we don&#8217;t have a SSL Enabled site. This is very true, but we&#8217;re not a large company with tons of visitors (in fact we&#8217;re still at less than 1000 unique visitors) and we&#8217;re not asking you for your passwords or allowing you to do online banking (however, feel free to email me your online banking information <img src='http://www.sslfail.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  ).</p>
<p>We could setup a self-signed certificate to allow for encryption, but then you&#8217;d have to walk through those annoying &#8220;Add An Exception&#8221; screens for this site.</p>
<p>The reality of it is that not everyone <strong>needs</strong> SSL, although I&#8217;m sure in saying that even some of my fellow SSLFail.com bloggers will disagree with me.</p>
<p>That being said, if anyone feels we require a SSL cert, let me know&#8230; I doubt I&#8217;ll shell out the money for one, but maybe a SSL vendor will come along and read this and offer us one free of charge <img src='http://www.sslfail.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> .</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/01/sslfailcom-ssl-fail/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Welcome to SSLFail</title>
		<link>http://www.sslfail.com/2009/01/welcome-to-sslfail/</link>
		<comments>http://www.sslfail.com/2009/01/welcome-to-sslfail/#comments</comments>
		<pubDate>Tue, 13 Jan 2009 01:46:28 +0000</pubDate>
		<dc:creator>Tyler</dc:creator>
				<category><![CDATA[Site Related]]></category>

		<guid isPermaLink="false">http://www.sslfail.com/?p=3</guid>
		<description><![CDATA[Welcome to SSLFail!
Lately there seems to be a lot of SSL discussion, and not just the recently released &#8216;Rogue CA&#8216; presentation. There have been speakers at several cons, blog posts, and conversations lately around the subject of SSL.
Marcin and I were discussing some of the recent failures that we&#8217;ve seen and that others have mentioned [...]]]></description>
			<content:encoded><![CDATA[<p>Welcome to SSLFail!</p>
<p>Lately there seems to be a lot of SSL discussion, and not just the recently released &#8216;<a href="http://www.phreedom.org/research/rogue-ca/">Rogue CA</a>&#8216; presentation. There have been speakers at several cons, blog posts, and conversations lately around the subject of SSL.</p>
<p><a href="http://www.tssci-security.com/">Marcin</a> and I were discussing some of the recent failures that we&#8217;ve seen and that others have mentioned and decided that we needed a place to bring all of these together, to point out that companies are failing at SSL. Marcin suggested mismatched.com, however the domain was already taken and as I typed in random things, I stumbled across the availability of SSLFail.com. It seemed to work well, so I registered it and 24 hours later here we are.</p>
<p>One of my coworkers, Jay, spends a lot of time playing with SSL&#8230; both at work and on his own. So naturally when the thought of blogging about SSL came to mind, so did his name. I pinged him and sure enough, he was interested.</p>
<p>So here we are, the three of us (for now). I invite anyone interested in writing here to contact us.</p>
<p>Enjoy,<br />
Tyler.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sslfail.com/2009/01/welcome-to-sslfail/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
	</channel>
</rss>
