[18069] in bugtraq

home help back first fref pref prev next nref lref last post

Re: cache cookies?

daemon@ATHENA.MIT.EDU (Adam Shostack)
Wed Dec 13 23:10:42 2000

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id:  <20001213092211.A6670@weathership.homeport.org>
Date:         Wed, 13 Dec 2000 09:22:11 -0500
Reply-To: Adam Shostack <adam@HOMEPORT.ORG>
From: Adam Shostack <adam@HOMEPORT.ORG>
X-To:         cypherstar <cypherstuff@vrl.com.au>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <200012121350.VAA22075@hedgehog.highway1.com.au>

On Tue, Dec 12, 2000 at 09:56:38PM +0800, cypherstar wrote:
| Has this been sighted already?
|
| or is it snakeoil?
|
| http://www.princeton.edu/pr/news/00/q4/1205-browser.htm

I haven't been able to find the paper online.  That said, this strikes
me as very similar to Martin Pool's "Meantime" attack, which may have
escaped notice by Felten and Schneider.  I've sent a note to all three
asking for clarification.

http://www.linuxcare.com.au/mbp/meantime/


Adam

--
"It is seldom that liberty of any kind is lost all at once."
					               -Hume

home help back first fref pref prev next nref lref last post