Thursday, September 20, 2007

User tracking with SSL certificates in Firefox

Security specialist Alexander Klink has described a way to identify PCs remotely by means of a kind of super cookie. At the moment, it seems that PCs can only be detected by this means if Firefox is configured as the default browser. The "cookie" is based on TLS Client certificates generated by means of "Signed Public Key and Challenge" (SPKAC), which are saved locally when a specially prepared website is visited.

Read the article HERE.

0 Comments:

Post a Comment

<< Home