What’s Your Threat Model?
WYTM is part of Ian Grigg’s SSL Considered Harmful rant collection. His point is that SSL’s assumptions (that "man in the middle" attacks are a threat, but the client and server are secure) are wrong: clients and servers are constantly port-scanned, hacked and infected with viruses, while what’s sent over the line is pretty much unmolested.
Except he says it much better.
(Link via Kevin Marks)
About this entry
You’re currently reading “What’s Your Threat Model?,” an entry on Distractions
- Published:
- 05.11.03 / 2pm
- Category:
- Software and Programming
- Tags:
- Previous:
- Sortable DHTML tables
- Next:
- Organ Printing






No comments
Jump to comment form | comments rss [?]