Chrome extensions crocked with simple attack

Detectify researcher Mathias Karlsson says attackers can remove Google Chrome extensions, including the popular HTTPS Everywhere extension, if users do nothing else but visit a web page.

Expoilts & Vulnerabilities

Apache HTTPS Configuration

  • Navigate to the folder containing the openssl.cnf (Apache2.4/Conf) file and execute the commands:
openssl req -config openssl.cnf -new -out certificate.csr -keyout certificate.pem
 openssl rsa -in certificate.pem -out certificate.key
 openssl x509 -in certificate.csr -out certificate.crt -req -signkey certificate.key -days 3650

Posting For Sheliakathy

In this thread https://www.myptsd.com/c/threads/i-dont-want-to-be-functional-anymore.55361/#post-885384 She wrote "I cannot get into anything on the WHOLE FORUM. I have been locked out with some kind of strange images that are not links.

Block YouTube over HTTPS in Cyberoam Firewall

Block YouTube over HTTPS in Cyberoam Firewall


As we know, YouTube uses Google's certificate over HTTPS and then its not possible to block YouTube website over HTTPS through a common web filter based common name scanning.