Get a Pentest and security assessment of your IT network.

Cyber Security

Triple Handshake TLS Attacks Target Resumption, Renegotiation

A team of researchers has published a paper that explains a number of attacks against websites and Web-based applications running TLS. The paper, called Triple Handshakes and Cookie Cutters: Breaking and Fixing Authentication over TLS, describes in detail how an attacker can use a man-in-the-middle attack to successfully impersonate a TLS client in attacks against TLS renegotiations, wireless networks, challenge-response protocols and channel-bound cookies. The researchers say their attacks work against leading browsers, VPN applications, and HTTPS libraries.

Source: https://threatpost.com/triple-handshake-attacks-target-tls-resumption-renegotiation/104603/

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation