Wednesday, 31 October 2007
- Re: WSC WG f2f November 2007 Agenda (v 1.0)
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- ACTION-323 Respond with a proposal on ISSUE-115
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Meeting record: 2007-10-24
- travel: WSC WG distributed meeting, Wednesday, 2007-10-31
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-31
- RE: WSC WG f2f November 2007 Agenda (v 1.0)
- RE: WSC Open Action Items
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-31
Tuesday, 30 October 2007
- WSC Open Action Items
- Re: ISSUE-116 (Hal): Should users be able to reconfigure primary chrome? [Techniques]
- RE: ISSUE-115: Mixing of security information and content in non-visual environments? [Techniques]
- RE: ISSUE-112: Conformance models for usability? [Techniques]
- Re: ISSUE-112: Conformance models for usability? [Techniques]
- Re: PII Editor => Safe Web Form Editor
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- Re: ISSUE-126: Define "picture-in-picture attack" [Techniques]
- Re: [TLS] security levels for TLS
- Re: ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- Re: PhishTank Annual Report
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-31
- Re: wsc-xit: Please review for publication.
- WSC WG f2f November 2007 Agenda (v 1.0)
- Re: wsc-xit: Please review for publication.
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-31
- Agenda: WSC WG distributed meeting, Wednesday, 2007-10-31
- Re: wsc-xit: Please review for publication.
- Re: wsc-xit: Please review for publication.
Monday, 29 October 2007
- Re: IE Favorites Feature May Allow Phishing
- RE: IE Favorites Feature May Allow Phishing
- Re: ACTION-301: Usability review of Identity Signal
Saturday, 27 October 2007
Friday, 26 October 2007
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: Meeting record: WSC WG weekly 2007-10-10
- Re: Meeting record: WSC WG f2f 2007-10-03
- Re: Meeting record: WSC WG f2f 2007-10-02
- RE: IE Favorites Feature May Allow Phishing
- FW: IE Favorites Feature May Allow Phishing
- Re: ACTION-301: Usability review of Identity Signal
- RE: ACTION-301: Usability review of Identity Signal
- Re: ACTION-301: Usability review of Identity Signal
- Testability of recommendation
- RE: ACTION-301: Usability review of Identity Signal
- Re: FW: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- Re: ACTION-301: Usability review of Identity Signal
- Re: Publication candidate for wsc-threats
- Re: Publication candidate for wsc-threats
Thursday, 25 October 2007
- Meeting record: WSC WG f2f 2007-10-02
- Meeting record: WSC WG weekly 2007-10-10
- Meeting record: WSC WG f2f 2007-10-03
- Re: Phishing++
- Re: Phishing++
- RE: Phishing++
- Phishing++
Wednesday, 24 October 2007
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-24
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-24
- RE: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-24
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-24
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-24
Tuesday, 23 October 2007
Monday, 22 October 2007
- Re: Larry Seltzer on browser SSL errors and EV
- Re: Larry Seltzer on browser SSL errors and EV
- Re: Larry Seltzer on browser SSL errors and EV
- Re: Publication candidate for wsc-usecases
- Publication candidate for wsc-usecases
- Publication candidate for wsc-threats
- Re: wsc-xit: Please review for publication.
- Re: wsc-xit: Please review for publication.
- Larry Seltzer on browser SSL errors and EV
Sunday, 21 October 2007
Wednesday, 17 October 2007
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- Re: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- Re: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
Tuesday, 16 October 2007
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- Re: ISSUE-128: Strong / weak algorithms? [Techniques]
- Agenda: no call 17 October.
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- ACTION-301: Usability review of Identity Signal
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
Monday, 15 October 2007
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- RE: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- Re: ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
- wsc-xit: Please review for publication.
- ISSUE-130 (Trust Anchors): Trust Anchor Consistency Across Devices? [Techniques]
Friday, 12 October 2007
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- ACTION-303: Page scoring usability test
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- ACTION-284: Trusted Certs
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- ACTION-294: Review threat trees draft wrt dns poisoning
- RE: Please review: Safe Web Form Editor in Editor's Draft
- Re: Safe bar: really "full-screen rendering"?
- Re: ACTION-312 Provide a first pass of associating wiki links with the FPWD text
- Re: ACTION-312 Provide a first pass of associating wiki links with the FPWD text
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
Thursday, 11 October 2007
- PhishTank Annual Report
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- RE: clarifications needed re safe form editor cert matching algorithm
- Re: clarifications needed re safe form editor cert matching algorithm
- RE: clarifications needed re safe form editor cert matching algorithm
- Re: ISSUE-127: Safe Form Bar: Separate MITM handling? [Techniques]
- RE: ISSUE-127: Safe Form Bar: Separate MITM handling? [Techniques]
- RE: Please review: Safe Web Form Editor in Editor's Draft
- Re: clarifications needed re safe form editor cert matching algorithm
- RE: Please review: Safe Web Form Editor in Editor's Draft
- Re: clarifications needed re safe form editor cert matching algorithm
- RE: clarifications needed re safe form editor cert matching algorithm
- RE: Safe bar: really "full-screen rendering"?
- [TLS] security levels for TLS
- Re: ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- RE: ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- Re: ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- ISSUE-129: Should we say anything about scoring techniques? [Techniques]
- Re: ACTION-312 Provide a first pass of associating wiki links with the FPWD text
- RE: Please review: Safe Web Form Editor in Editor's Draft
- RE: ISSUE-128: Strong / weak algorithms? [Techniques]
- Re: ACTION-307 Propose language based on McCormick's slides
- ISSUE-128: Strong / weak algorithms? [Techniques]
- Please review: Safe Web Form Editor in Editor's Draft
- Re: ISSUE-127: Safe Form Bar: Separate MITM handling? [Techniques]
- ISSUE-127: Safe Form Bar: Separate MITM handling? [Techniques]
- ISSUE-126: Define "picture-in-picture attack" [Techniques]
- ISSUE-125: Safe Form Bar: on screen masking phrased in terms of visual user agents [Techniques]
- ISSUE-124: Safe Form Bar: reliable text [Techniques]
- Safe bar: really "full-screen rendering"?
- ISSUE-123: Safe Form Bar: HTTP assumptions in "no TLS" section [Techniques]
- ISSUE-122: Safe Form Bar: CA practice assumptions [Techniques]
- ISSUE-121: Safe Form Bar certificate matching issues [Techniques]
- clarifications needed re safe form editor cert matching algorithm
- ISSUE-120: Audio "logotypes" [Techniques]
- ISSUE-119: no-interaction certs [Techniques]
Wednesday, 10 October 2007
- RE: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
- RE: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
- ISSUE-118: Interaction glossary? [Techniques]
- RE: PII Editor => Safe Web Form Editor
- RE: Safe Web Browsing
- Re: Safe Web Browsing
- Safe Web Browsing
- Re: PII Editor => Safe Web Form Editor
- Editor's draft update: Some actions done, more to follow
- More props Re: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- Re: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
- Re: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
Tuesday, 9 October 2007
- Re: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
- Re: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- Re: FW: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- RE: FW: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- RE: ISSUE-101 Create "visiting known site that is now malware" use case as per ACTION-275
- Threat trees - DNS poisoning - luring attack
- Re: Agenda: WSC WG distributed meeting, Wednesday, 2007-10-10
- Agenda: WSC WG distributed meeting, Wednesday, 2007-10-10
- PII Editor => Safe Web Form Editor
Monday, 8 October 2007
- ISSUE-117 (serge): Eliminating Faulty Recommendations [All]
- Re: ISSUE-112: Conformance models for usability? [Techniques]
Sunday, 7 October 2007
Friday, 5 October 2007
- ACTION-312 Provide a first pass of associating wiki links with the FPWD text
- ACTION-298: Clarification needed for user intervention requirements in 7.3.1
- WSC Open Action Items
- RE: ISSUE-112: Conformance models for usability? [Techniques]
Thursday, 4 October 2007
Wednesday, 3 October 2007
- TAG on passwords in the clear at the WSC TPAC meeting
- RE: ISSUE-97: Should logotypes be tied to EV certificates? [Techniques]
- Re: ISSUE-116 (Hal): Should users be able to reconfigure primary chrome? [Techniques]
- RE: ISSUE-115: Mixing of security information and content in non-visual environments? [Techniques]
- Re: ISSUE-97: Should logotypes be tied to EV certificates? [Techniques]
- ISSUE-116 (Hal): Should users be able to reconfigure primary chrome? [Techniques]
- RE: ISSUE-115: Mixing of security information and content in non-visual environments? [Techniques]
- ISSUE-115: Mixing of security information and content in non-visual environments? [Techniques]
- ISSUE-114: Self-signed certificate changeover [Techniques]
- ISSUE-113: Trusted Certificates [Techniques]
- ISSUE-112: Conformance models for usability? [Techniques]
- RE: ACTION-307 Propose language based on McCormick's slides
- RE: ACTION-307 Propose language based on McCormick's slides
- Whys, wherefores, examples (Re: Certificate status checks vs validity period; self-signed certs (Re: Current state of editor's draft / IdentitySignal))
- ACTION-307 Propose language based on McCormick's slides
- Re: FW: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
Tuesday, 2 October 2007
- Re: FW: ISSUE-83: Scenario updates (for certain abilities andfunctional limitations)
- directions for dinner
- ISSUE-111: Do we need material for login-specific form interactions? [Techniques]
- Re: ISSUE-110: POST triggered via JavaScript [Techniques]
- Interesting Article on Client Side Attacks
- ISSUE-110: POST triggered via JavaScript [Techniques]
- ISSUE-109: Should there be recommendations against favicons? [Techniques]