[Discuss] Steve Gibson's SQRL

Derek Atkins warlord at MIT.EDU
Wed Feb 25 12:01:41 EST 2015


Bill Ricker <bill.n1vux at gmail.com> writes:

> On Wed, Feb 25, 2015 at 8:45 AM, Richard Pieri <richard.pieri at gmail.com>
> wrote:
>
>> He's reinvented APOP.
>
>
> ​There's certainly a similarity. Using the same techniques outside of POP
> in a phone-and-browser setting is darn good idea. ​

tl;dr

And how does one know that the authentication server URL is "the right"
URL and not, say, a MitM/Fishing attack?

-derek

-- 
       Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
       Member, MIT Student Information Processing Board  (SIPB)
       URL: http://web.mit.edu/warlord/    PP-ASEL-IA     N1NWH
       warlord at MIT.EDU                        PGP key available



More information about the Discuss mailing list