|29 Apr 2014||#1|
'Triple handshake' bug another big problem for TLS/SSL
You could miss it if you weren't paying close attention through all the Heartbleed blather, but last week Apple patched a severe problem in their TLS/SSL code in iOS and OS X. An attacker in a privileged position, i.e., between two parties engaged in SSL/TLS (henceforth just "TLS"), could intercept and decode communications or inject commands and data.
The bad news is that this isn't just a bug in Apple's code; it's a bug in the TLS protocol itself, a protocol which appears to be quite a mess.
Professor/Cryptographer Matthew Green of Johns Hopkins says that the triple handshake changes our concept of what security means in the context of TLS. (He has also decided to learn one lesson from Heartbleed: When it comes to bugs, branding is key, and so he calls it "3Shake" and has commissioned the nearby logo.)
|My System Specs|
|Similar help and support threads for2: 'Triple handshake' bug another big problem for TLS/SSL|
|MY computer will not handshake with my HDTV using the HDMI port||Graphic Cards|
|HD5450 Triple Monitor Support Problem||Graphic Cards|
|Triple boot problem...||Installation & Setup|
|Triple boot problem - 2x HDDs, 2x Win7s & 1x WinXP. How to work this?||Software|
© Designer Media Ltd
All times are GMT -5. The time now is 03:01 PM.