[2549] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

Re: Security/Privacy of Certificates in Netscape 3.0

daemon@ATHENA.MIT.EDU (David W. Morris)
Tue Jul 30 16:00:41 1996

Date: Tue, 30 Jul 1996 10:26:10 -0700 (PDT)
From: "David W. Morris" <dwm@shell.portal.com>
To: Wayne Wilson <wwilson@umich.edu>
cc: www-security@ns2.rutgers.edu
In-Reply-To: <Pine.WNT.3.92.960729172809.-134561C-100000@waynepc95.med.umich.edu>
Errors-To: owner-www-security@ns2.rutgers.edu



On Mon, 29 Jul 1996, Wayne Wilson wrote:

> least the VISA number part of it.  I am not so concerned with sending any
> of this information over SSL (or equivalent encryption) but I am concerned
> with what happens to it at your site, and that you never say.  How secure
> are your databases?  What kinds of precautions are you taking to prevent

Therein is the largely ignored real problem ... large collections of
credit card numbers are very attractive taragets for those with
nefarious intent.

Dave Morris



home help back first fref pref prev next nref lref last post