Home  >  Community  >  The eBay Outlook  >  Important PayPal Security Warning


<< previous topic post new topic post reply next topic >>
 LtRay
 
posted on November 9, 2009 09:51:57 AM new
http://www.secureflorida.org/news/securityissues/2009/10/26/fake_ssl_certificate/

IE, Chrome, Safari duped by bogus PayPal SSL certificate
Published October 26, 2009
by The Register

A hacker has created a counterfeit security certificate that tricks Microsoft Internet Explorer, Apple Safari for Windows, and Google Chrome into thinking a bogus PayPal payment page is the real thing. Mozilla Firefox is not vulnerable to this exploit.

The certificate exploits a security hole in a Microsoft application programming interface known as the CryptoAPI, which is used by the IE, Google Chrome and Apple Safari for Windows browsers to parse a website's SSL certificates. Even though the certificate is demonstrably forged, it can be used with a previously available hacking tool called SSLSniff to cause all three browsers to display a spoofed page with no warnings, even when its address begins with "https."

Until Microsoft fixes the vulnerability, users of those 3 browers should beware of any links that claim to take them to a secure PayPal page. People should navigate directly to the PayPal site instead, so they know they're not being fooled into giving their information, including bank account numbers, to a hacker.

For more information about online security risks visit Secure Florida http://www.secureflorida.org/


[ edited by LtRay on Nov 9, 2009 09:55 AM ]
 
 profe51
 
posted on November 9, 2009 10:16:16 AM new
All Win-Doze browsers. Imagine that.

 
 CBlev65252
 
posted on November 10, 2009 02:22:53 PM new
I only use FireFox. No exceptions! If a site I want to visit will only work on IE, I don't go to that site.


Cheryl
http://www.youravon.com/cherylblevins
Now you can buy Avon from me from anywhere in the world.
 
 ChristopherCS
 
posted on November 10, 2009 05:03:10 PM new
The second most popular Windows browser is not effected, though the Mac created one is?

Too bad Mozilla doesn't make an operating system to put both the flawed and overpriced OS's in their place.
=)


 
 
<< previous topic post new topic post reply next topic >>

Jump to

All content © 1998-2026  Vendio all rights reserved. Vendio Services, Inc.™, Simply Powerful eCommerce, Smart Services for Smart Sellers, Buy Anywhere. Sell Anywhere. Start Here.™ and The Complete Auction Management Solution™ are trademarks of Vendio. Auction slogans and artwork are copyrights © of their respective owners. Vendio accepts no liability for the views or information presented here.

The Vendio free online store builder is easy to use and includes a free shopping cart to help you can get started in minutes!