[5238] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Security Lab To Certify Banking Applications

daemon@ATHENA.MIT.EDU (William H. Geiger III)
Tue Jul 27 11:47:49 1999

From: "William H. Geiger III" <whgiii@openpgp.net>
Date: Tue, 27 Jul 1999 10:15:23 -0500
To: Rick Smith <rick_smith@securecomputing.com>
In-Reply-To: <3.0.3.32.19990727094718.009765e0@mailhost.sctc.com>
Cc: Tom Weinstein <tomw@geocast.com>, Robert Hettinga <rah@shipwright.com>,
        dcsb@ai.mit.edu, cryptography@c2.net,
        Digital Bearer Settlement List <dbs@philodox.com>

In <3.0.3.32.19990727094718.009765e0@mailhost.sctc.com>, on 07/27/99 
   at 09:47 AM, Rick Smith <rick_smith@securecomputing.com> said:

>Regarding the general direction of these comments....

>>"William H. Geiger III" wrote:

>>> Well I have my doubts on this. Either they refuse to certify Microsoft &
>>> Netscape software and alienate 90% of the consumer market, or they do
>>> certify them making their certification worthless.

>At 04:39 PM 7/26/99 -0700, Tom Weinstein wrote:

>>While they certainly couldn't certify any browser that included Java or
>>JavaScript, .....

>Naturally I understand the logic behind these, but it's a bit like saying
>"We won't sell anyone a car unless it's burglarproof." People use their
>cars quite a bit even though they're expensive and risk of being stolen.

Yes but they are not using them to carry around my bank balance either.
When we start talking about the security of trillions of dollars in e-comm
transactions the incentives are very high to break the system.

>I basically gave up on Java-bashing when I encountered Java and/or
>Javascript on DoD web sites dedicated to computer security awareness.
>Clearly the battle had been lost :-Q

And the number 1 oxymoron is ... Military Intelligence!!

-- 
---------------------------------------------------------------
William H. Geiger III  http://www.openpgp.net
Geiger Consulting    Cooking With Warp 4.0

Author of E-Secure - PGP Front End for MR/2 Ice
PGP & MR/2 the only way for secure e-mail.
OS/2 PGP 5.0 at: http://www.openpgp.net/pgp.html
Talk About PGP on IRC EFNet Channel: #pgp Nick: whgiii

Hi Jeff!! :)
---------------------------------------------------------------



home help back first fref pref prev next nref lref last post