SSL-DP: A Rootkit of Network Based SSL and TLS Traffic Decryptor

Wu Liu,Ping Ren,Yong Zhang,Hai-xin Duan
DOI: https://doi.org/10.1109/CTC.2010.15
2010-01-01
Abstract:With more and more security threat events happened aiming at financial web services, there is an increasing amount of transactions performed over the Internet. As a de-facto standard the security protocol SSL (Secure Sockets Layer) or TLS (Transport Layer Security) is used to create a secure connection to web services. This paper analyze the weakness of the SSL and TLS protocols, based on which, we designed and implemented a root-kit for network based SSL and TLS traffic decrypt ion , which is called SSL-DP. With the experiment of SSL-DP we can see that SSL/TLS protocol is not secure enough to protect the important network information such as E-commerce etc.
What problem does this paper attempt to address?