[colug-432] doubleclick demands my identity?

Rob Funk rfunk at funknet.net
Wed Dec 9 10:23:54 EST 2015


Rick Hornsby wrote:
> A little OT because this is Safari 9 on OS X 10.11 -
> 
> Does a browser prompt where doubleclick demands an identity
> certificate make sense?

> Screenshot: https://www.dropbox.com/s/io1ki94n88xibgo/Screenshot%202015-12-09%2007.17.01.png?dl=0
> 
> It happened this morning while reading Wired.com, after I went to a
> story[1].  I canceled the prompt, and double checked that my software
> based firewall (LittleSnitch) is blocking all outbound traffic to the
> doubleclick domain.  It's still weird, and reminds me why I've hated
> doubleclick for 15+ years.

I read about this on Twitter last night (I recommend following
@SwiftOnSecurity, as long as you don't mind the occasional Linux-user
trolling). Apparently Doubleclick somehow ended up with misconfigured
SSL/TLS. Temporary solution is to block ad.doubleclick.net.



More information about the colug-432 mailing list