client-side certificate
Posted Feb 26, 2005 18:27 UTC (Sat) by
giraffedata (subscriber, #1954)
In reply to:
client-side certificate by Klavs
Parent article:
New IDN Homograph Spoofing Response: IDN Will Not Be Disabled (MozillaZine)
Yes, I was confused. You're talking about a scheme to make the stealing of a password unproductive (because the password isn't useful by itself), rather than to prevent someone from being fooled into thinking he is talking to his bank when he is not.
Improving on the security of the password is good, but for a whole bunch of other reasons, phishing itself needs to be dealt with too.
(
Log in to post comments)