Since most xmpp servers will request peer certificates, the heartbleed (http://heartbleed.com/) test script from
http://s3.jspenguin.org/ssltest.py
does not work out of the box.

I modified it slightly so it can now detect the handshake done message when it's after the cert request:
http://hancke.name/tmp/xssltest.py

happy testing :-(

Reply via email to