<?xml version="1.0" encoding="utf-8" ?>

<rss version="0.91" >
<channel>
<title>Yet Another PHP Security Blog</title>
<link>http://www.php-security.net/</link>
<description>Odds and ends about PHP security</description>
<language>en</language>
<image>
        <url>http://www.php-security.net/templates/default/img/s9y_banner_small.png</url>
        <title>RSS: Yet Another PHP Security Blog - Odds and ends about PHP security</title>
        <link>http://www.php-security.net/</link>
        <width>100</width>
        <height>21</height>
    </image>

<item>
    <title>SSL CA Trust relationships and the future</title>
    <link>http://www.php-security.net/archives/7-SSL-CA-Trust-relationships-and-the-future.html</link>

    <description>
        There&amp;#8217;s a very good writeup by fellow security analyst Moxie Marlinspike in the ThreatPost blog that details the current issues with SSL and trust roots - and although a little short on actual mitigation ideas - pretty much nails all the problems that we currently have. As a little sugarcoating, he also dismantles the notion that DNSSEC is &amp;#8220;our savior&amp;#8221;.&lt;br /&gt;
&lt;br /&gt;
And there&amp;#8217;s a clever little jab at GoDaddy. &lt;img src=&quot;http://www.php-security.net/templates/GreenMile/img/emoticons/wink.png&quot; alt=&quot;;-)&quot; style=&quot;display: inline; vertical-align: bottom;&quot; class=&quot;emoticon&quot; /&gt;&lt;br /&gt;
&lt;br /&gt;
Go find the article &lt;a href=&quot;https://www.threatpost.com/en_us/blogs/ssl-and-future-authenticity-041111&quot;&gt;here at ThreatPost.&lt;/a&gt; 
    </description>
</item>

</channel>
</rss>

