Man-In-the-Middle Interfering with Increased Security
blog.mozilla.org
blog.mozilla.org
Richard Bejtlich's "Practice of Network Security Monitoring" has a chapter dedicated to the costs and benefits of proxy deployments; I recommend the book for a look at one coherent method of network security monitoring.
It also establishes a single machine that sees all the plaintext of everything that should have been TLS encrypted from every machine on your network. It's like attacker catnip.
Bigger problems than an attacker being able to decrypt and modify all of the TLS sessions in your company? If you have bigger problems than that then they've presumably spilled out of the realm of IT problems entirely and you're dealing with some kind of government lawyers or maybe a large uncontrollable fire.
The attacker can pull credentials that any user uses on any webpage or other TLS-based connection. It's not the domain admin password or the database password, it's both, and the other ones too. Like the one the accountants type into the company's banking website.
TLS MITM is essentially the holy grail because there are so many overlapping ways to break into everything. If there is some password nobody has ever typed into a web admin portal then get their email credentials and do a password reset. Or use one of the apps that uses TLS to authenticate updates to push out a key logger. Or wait for a new attack to be published and block delivery of the patch. Or take advantage of being able to display anything you want on the company's internal website and start social engineering. On and on.
TLS under non-self-compromise circumstances provides reasonable security and is allowed through corporate firewalls, which means that everything uses it one way or another. Which means if you can compromise TLS then you can essentially compromise everything.
You're right that a TLS MitM is one big way to make it easier for them to pivot and install malware, but there are many other ways they can do it, too, if they're on your internal network.
I think the pros of TLS interception outweigh the cons. You are exposing yourself to a little more risk once someone has already breached you, but you could say the same about other security products and procedures. For example, if you gained admin access to an endpoint agent like Carbon Black or Google Rapid Response, you can now deploy malware to every machine in the company. The pros of these endpoint monitoring tools outweigh the cons, though. You just have to architecture and protect them properly.
We also do a lot of anomaly detection on the proxy logs themselves. It does obscure NetFlow-based anomaly detection, and does create complications in the architecture, sure, but from my experience with them, the pros outweigh the cons if you set them up properly.
If you think that using MitM proxies should be illegal for employers or other organizations providing clients, that's probably more of a legal discussion. I don't think there's necessarily a right to privacy when it comes to internet use at your workplace, as long as all parties are aware of this.
[1]: https://www.chromium.org/Home/chromium-security/security-faq...
[2]: https://wiki.mozilla.org/SecurityEngineering/Public_Key_Pinn...
Now it would be interesting if firefox could distinguish between the cert store that it came with and new certs installed.
Another idea would be for users to write an extension that could say "such-and-such cert is my employers and you should create a UI flag when it's being used." I know I looked into that for Chrome and it's impossible since it's not available to the extension system.
You sound kinda authoritative, are you suggesting that you could propose this change to firefox and it might get accepted?
This doesn't seem like a thing you could easily do from an extension, especially from a Chrome extension. But the browser itself easily has access to this information.
> You sound kinda authoritative, are you suggesting that you could propose this change to firefox and it might get accepted?
No, not at all; I'm not a Firefox developer. I just have strong opinions on how broken MITM is, and thoughts on how to mitigate it while dealing with the reality that an ultimatum to choose between the browser and the organizational policy will often see the browser lose. Leaving the browser capable of browsing, while showing an unremovable information bar that warns people about something MITMing their traffic, seems like a strong step towards condemning MITM that might actually work.
They probably should have foreseen this and used OpenPGP-based updates over plain HTTP though.
I'm not naive, but I still think it's only to prudent to point out how ridiculous this sounds. In any case, it seems like Mozilla needs a bit of Skype-magic for their update process. Relying on the very thing you are patching with every minor version seems silly regardless.
SHA-1 was never fully disabled; it's just that certificates using SHA-1 issued after that date weren't accepted anymore. Telemetry is important to understand the ramifications of this issue. This change is likely to be reverted once Mozilla understands the implications. Take a look at the discussion on Mozilla's mailing list for more insight into their thinking[1].
[1]: https://groups.google.com/forum/#!topic/mozilla.dev.platform...
https://twitter.com/TonyFlygon/status/684756701027954689
(Example user complaint.)
There's no way to detect whether or not an HTTPS iframe has failed to load, so my workaround was to fall back to HTTP if the HTTPS iframe didn't load within 2 seconds. We still switch the connection over to HTTPS if the iframe does eventually load.
I'm kind of confused by why so many users thought it was a Pokemon Showdown issue, specifically. Doesn't Google default to HTTPS? PS shouldn't be the most significant website they have trouble with.
If it were, PS would have been unusable to anyone with Firefox and Avast/BitDefender/etc.
It also allows image embeds. Users often share HTTP images in the chatrooms, which browsers using the HTTPS site complain about.
For some weird reason, Google Chrome doesn't support data-URIs in HTTPS when using HTML5 drag-and-drop to drag files from a website to the desktop, which requires an annoying workaround.
In addition, most people wanting to set up a third-party PS server don't want to go through the hassle of acquiring a certificate. It makes the setup process a lot more complicated than just "clone the repository and run ./pokemon-showdown"
Then again, if you don't use https on the whole site, active attacks could already simply change the url of the iframe to be http and intercept that with sslstrip, and passive attacks could already steal cookies.
Anyone who really needs secure pokemon battles can just use the HTTPS site, anyway. (Which does ask the user for confirmation before falling back to HTTP, if an HTTPS connection fails)
> security.pki.sha1_enforcement_level” to 0 (which will accept all SHA-1 certificates)
https://support.globalsign.com/customer/portal/articles/1447...