@patrickcmiller
Works for CISCO "secure" email gateway, too AFAIK.
Notices by Varbin :arctic_fox: :gay_furr: (varbin@infosec.exchange)
-
Embed this notice
Varbin :arctic_fox: :gay_furr: (varbin@infosec.exchange)'s status on Tuesday, 13-Aug-2024 05:36:36 JST Varbin :arctic_fox: :gay_furr: -
Embed this notice
Varbin :arctic_fox: :gay_furr: (varbin@infosec.exchange)'s status on Sunday, 11-Aug-2024 20:52:42 JST Varbin :arctic_fox: :gay_furr: @patrickcmiller
I am sure declaring war against the own customers will surely increase the revenue... -
Embed this notice
Varbin :arctic_fox: :gay_furr: (varbin@infosec.exchange)'s status on Tuesday, 09-Jul-2024 20:22:42 JST Varbin :arctic_fox: :gay_furr: @ryanc
Is this still related to the vulnerability you discovered? -
Embed this notice
Varbin :arctic_fox: :gay_furr: (varbin@infosec.exchange)'s status on Friday, 17-May-2024 09:14:47 JST Varbin :arctic_fox: :gay_furr: @patrickcmiller
There is something off here:
1. There never was a claim for FIDO2 being MITM resistant.
2. FIDO2 isn't even attacked at all, but other parts of the system
3. Even those systems are attacked outside of the established security models (mainly, that TLS works and the browser's session storage is not hijacked).In other words: Even the most secure door lock does not protect against burglars blowing up the roof. There is no surprise here.