Advertisement
Promo

Security threats Toolkit

Browser made secure in record time

Rupert Goodwins ZDNet.co.uk

Published: 08 Apr 1998 14:27 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

In a single fifteen-hour stint, a team of Australian programmers smashed the US Government's encryption export restrictions by adding strong cryptography to the source-code version of Netscape'sbrowser.

It took the Mozilla Crypto Group under two hours to rebuild a working version of the program after receiving the source. Thirteen hours later, the standard Secure Sockets Layer (SSL) had been added and the resulting cryptographically secure system tested live on the Internet with existing servers.

The system, nicknamed Cryptozilla, uses the SSLeay library of non-American software: although the browser isn't yet in finished form, the writers report that the "most important first step has been taken". Executable files of the work in progress are available for a variety of platforms including Linux and Win32: these can be freely downloaded from the web site. The only restriction on them is that if a copy is downloaded in the US, it cannot then be exported.

Strong cryptography as implemented in Cryptozilla ensures beyond reasonable doubt that transactions made across the Web cannot be monitored or faked. The weakened version that the US Government allow for export merely makes it difficult to monitor or spoof a message, but has been shown to be insecure to a concerted attack.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
41 out of 75 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:





Video icon

Video

Sentry Posts Blog

Official Organizations Losing Data

How does this article from earlier today make you feel? How many more government, health service, or military officials are going to lose pen drives, DVDs, USB hard disks and even entire... More

2 comments

Twitter hack was DNS redirect

Twitter has said an attack on Thursday which took the site offline for many users was the result of a DNS redirect. A group calling itself the Iranian Cyber Army redirected users... More

1 comment

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Win a BlackBerry with Vlingo voice recognition

Win a BlackBerry with Vlingo voice recognition

What is ZDNet UK's usual tagline?

Competition closes - 14 Jan 2010


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters