“The technique, scheduled to be demonstrated Thursday at the Black Hat security conference in Las Vegas, decodes encrypted data that online banks and e-commerce sites send in responses that are protected by the widely used transport layer security (TLS) and secure sockets layer (SSL) protocols. The attack can extract specific pieces of data, such as social security numbers, e-mail addresses, certain types of security tokens, and password-reset links. It works against all versions of TLS and SSL regardless of the encryption algorithm or cipher that’s used.”
Related posts:
Lavabit Owner Faces $10K Fine For Protecting Users From Federal Spying
U.S. court grants Nigerian asylum-seeker the right to testify about his own torture
What Exactly Are the NSA’s ‘Groundbreaking Cryptanalytic Capabilities’?
Dutch Christian Democrats Push For Ban On Tor Network, Bitcoin
Administrative Bloat in US Public Schools
Singapore opens world's first physical precious metals exchange
California Rep. Supported By Banks Pushes For Federal Cryptocurrency Ban
Olaf Carlson-Wee Talks About Coinbase at Money2020
Ohio University Considers Mandatory Re-Education Classes For Smokers
$21 million later, London police stop waiting out Assange at embassy
Broadcom chip bug opened 1 billion phones to a Wi-Fi-hopping worm attack
Did the Southern Poverty Law Center Instigate an Attempted Murder?
Robert Parry: Can MSM Handle the Contra-Cocaine Truth?
A Death Before Dying: Solitary Confinement on Death Row
SecondMarket’s Bitcoin Investment Trust puts bitcoin in IRAs