X
點擊此處開啟此網站的行動版。

技術支援討論區

MITM? Https certificate.

已張貼

Hello. Google and Mozilla recently blocked the government certificate in Kazakhstan. And what about Kaspersky Lab? The Kaspersky products are already banned for use in the U.S. government.

There is also information that the Kaspersky laboratory is cooperating with special services. After all, Kaspersky himself and his colleagues are former employees of the KGB high school. This is not a secret or speculation, but well-known information.

I recently installed kaspersky internet security. Then I decided to see the certificate in many browsers and saw it https://imgur.com/a/o4B0HG0

It turns out Kaspersky decrypts the traffic. It automatically installs its certificate. Root certificate. https://support.kaspersky.ru/common/compatibility/14620 Now all my data can be compromised. What is it if not MITM?

Maybe you should block this certificate like Kazakhstan?

Hello. Google and Mozilla recently blocked the government certificate in Kazakhstan. And what about Kaspersky Lab? The Kaspersky products are already banned for use in the U.S. government. There is also information that the Kaspersky laboratory is cooperating with special services. After all, Kaspersky himself and his colleagues are former employees of the KGB high school. This is not a secret or speculation, but well-known information. I recently installed kaspersky internet security. Then I decided to see the certificate in many browsers and saw it https://imgur.com/a/o4B0HG0 It turns out Kaspersky decrypts the traffic. It automatically installs its certificate. Root certificate. https://support.kaspersky.ru/common/compatibility/14620 Now all my data can be compromised. What is it if not MITM? Maybe you should block this certificate like Kazakhstan?
附加的畫面擷圖
引用

額外的系統細節

已安裝的外掛程式

None

應用程式

  • User Agent: Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36

更多資訊

philipp
  • Top 25 Contributor
  • Moderator
5290 個解決方法 23372 個答案

Hi, these cases can not really be compared as Kaspersky products give you the choice if you want to have this feature on or off: How to troubleshoot security error codes on secure websites

If you don't trust the vendor of your anti-virus product you should rather uninstall it...

Hi, these cases can not really be compared as Kaspersky products give you the choice if you want to have this feature on or off: [[How to troubleshoot security error codes on secure websites]] If you don't trust the vendor of your anti-virus product you should rather uninstall it...
這篇文章有幫助嗎?
引用

提出問題者

Not certainly in that way. In Kazakhstan, citizens are also given the choice whether to install a certificate or not. This is official information.

In Kaspersky products, everything is a little different. You can test any of the products yourself. (I did the tests.) And make sure that during the initial installation you will not have that choice. This is the first problem. During installation, the root certificate will always be installed. You cannot refuse. And windows will not even ask you for confirmation. So most people don’t even know about it.

The second problem is that Kaspersky uses the certificate to decrypt https traffic. Many antiviruses decrypt traffic to scan for viruses. This is normal. But only a few do it this way.

Given the level of freedoms in Russia, given the fact that Kaspersky Lab and its specialists officially participate in meetings of the State Duma, taking into account communication with special services, I believe that installing a certificate carries enormous risks.

I propose to consider this problem in more detail.

Not certainly in that way. In Kazakhstan, citizens are also given the choice whether to install a certificate or not. This is official information. In Kaspersky products, everything is a little different. You can test any of the products yourself. (I did the tests.) And make sure that during the initial installation you will not have that choice. This is the first problem. During installation, the root certificate will always be installed. You cannot refuse. And windows will not even ask you for confirmation. So most people don’t even know about it. The second problem is that Kaspersky uses the certificate to decrypt https traffic. Many antiviruses decrypt traffic to scan for viruses. This is normal. But only a few do it this way. Given the level of freedoms in Russia, given the fact that Kaspersky Lab and its specialists officially participate in meetings of the State Duma, taking into account communication with special services, I believe that installing a certificate carries enormous risks. I propose to consider this problem in more detail.
這篇文章有幫助嗎?
引用
問個問題

如果您還沒有帳號,您必須先 登入您的帳號 來回覆文章。請 開始一個新問題