Get a Pentest and security assessment of your IT network.

News

Dreaded SSLv3 bug no monster, only a POODLE

A vulnerability in SSLv3 allows the plaintext of secure connections to be calculated by an attacker on the network. Google’s Bodo Mller, along with fellow researchers Thai Duong and Krzysztof Kotowicz, disclosed the issue on Tuesday. The problem centers on the fact that, in order to work with legacy servers, most TLS clients will downgrade each time a secure connection attempt (handshake) fails. Google recommends that SSL v3 be disabled in the client or server (even both) to prevent this attack.”]

Source: https://www.csoonline.com/article/2833912/dreaded-sslv3-bug-no-monster-only-a-poodle.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

RasGas, The Second Victim!

News

Technical analysis of the Locker virus on mobile phones