Re: Standardizing Firefox's Implementation of Link Fingerprints

Dave Crocker <dcrocker@bbiw.net> Tue, 03 July 2007 01:07 UTC

Return-path: <discuss-bounces@apps.ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1I5WrC-0006oy-8t; Mon, 02 Jul 2007 21:07:06 -0400
Received: from discuss by megatron.ietf.org with local (Exim 4.43) id 1I5WmP-00073W-2D for discuss-confirm+ok@megatron.ietf.org; Mon, 02 Jul 2007 21:02:09 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1I5WmO-00073M-7k for discuss@apps.ietf.org; Mon, 02 Jul 2007 21:02:08 -0400
Received: from sb7.songbird.com ([208.184.79.137]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1I5WmJ-0001vd-RU for discuss@apps.ietf.org; Mon, 02 Jul 2007 21:02:08 -0400
Received: from [192.168.0.3] (adsl-67-127-58-184.dsl.pltn13.pacbell.net [67.127.58.184]) (authenticated bits=0) by sb7.songbird.com (8.12.11.20060308/8.12.11) with ESMTP id l6311hF5027280 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 2 Jul 2007 18:01:43 -0700
Message-ID: <46899FAD.6060704@bbiw.net>
Date: Mon, 02 Jul 2007 18:00:29 -0700
From: Dave Crocker <dcrocker@bbiw.net>
Organization: Brandenburg InternetWorking
User-Agent: Thunderbird 2.0.0.4 (Windows/20070604)
MIME-Version: 1.0
To: Edward Lee <edilee@mozilla.com>
Subject: Re: Standardizing Firefox's Implementation of Link Fingerprints
References: <dc07ed930707021624h25cb377dm1feb52d4dc02c2a8@mail.gmail.com> <46899BA5.4000401@dcrocker.net> <dc07ed930707021757l295f62c2sf4c5aa615745ebe6@mail.gmail.com>
In-Reply-To: <dc07ed930707021757l295f62c2sf4c5aa615745ebe6@mail.gmail.com>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
X-SongbirdInformation: support@songbird.com for more information
X-Songbird: Clean
X-Songbird-From: dcrocker@bbiw.net
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 79899194edc4f33a41f49410777972f8
X-Mailman-Approved-At: Mon, 02 Jul 2007 21:07:04 -0400
Cc: discuss@apps.ietf.org
X-BeenThere: discuss@apps.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: general discussion of application-layer protocols <discuss.apps.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=unsubscribe>
List-Post: <mailto:discuss@apps.ietf.org>
List-Help: <mailto:discuss-request@apps.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/discuss>, <mailto:discuss-request@apps.ietf.org?subject=subscribe>
Errors-To: discuss-bounces@apps.ietf.org


Edward Lee wrote:
> For a recent example, WordPress announced on March 2, 2007 that some
> copies of version 2.1.1 was hijacked.
> 
> "It was determined that a cracker had gained user-level access to one
> of the servers that powers wordpress.org, and had used that access to
> modify the download file. We have locked down that server for further

Thanks.

d/

d/
-- 

   Dave Crocker
   Brandenburg InternetWorking
   bbiw.net