Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


The DROWN Attack - new vulnerability (https)
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

The DROWN Attack - new vulnerability (https)

xrzxrz Member
edited March 2016 in General

https://drownattack.com/

DROWN is a serious vulnerability that affects HTTPS and other services that rely on SSL and TLS, some of the essential cryptographic protocols for Internet security. These protocols allow everyone on the Internet to browse the web, use email, shop online, and send instant messages without third-parties being able to read the communication.

DROWN allows attackers to break the encryption and read or steal sensitive communications, including passwords, credit card numbers, trade secrets, or financial data. Our measurements indicate 33% of all HTTPS servers are vulnerable to the attack.

Comments

Sign In or Register to comment.