Infosecurity.US

Information Security & Occasional Forays Into Adjacent Realms

  • Web Log

Staunch the Bleeding...

June 09, 2014 by Marc Handelman in Application Security, Data Security, Information Security, SSL / TLS, Web Security

Dan Goodin, writing at ArsTechnica, regales us with this sorry tale of another deep and aged flaw (in existence for nearly 16 years) in OpenSSL's cryptolib. This time, the flaw exists in the ChangeCipherSpec component of the crypto-library. Outstanding research, crafted by Lepidum tells it all.

 

June 09, 2014 /Marc Handelman
Application Security, Data Security, Information Security, SSL / TLS, Web Security
  • Newer
  • Older