Get a Pentest and security assessment of your IT network.

News

A roster of TLS cipher suites weaknesses

SSL/TLS combines a number of choices about cryptographic primitives, including the choice of cipher, into a collection that it calls a cipher suite A list of cipher suites is maintained by the Internet Assigned Names and Numbers Authority. In this post well be discussing known flaws in some of them, including known attacks on RC4 and AES-GCM. The best known attack against using RC4 with HTTPS involves causing a browser to transmit many HTTP requests and exploiting known biases in RC4 to build an increasingly precise probability distribution for each byte.”]

Source: https://security.googleblog.com/2013/11/a-roster-of-tls-cipher-suites-weaknesses.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months