
“There’s a critical vulnerability in some versions of the widely used OpenSSL code library that in some cases allows attackers to impersonate cryptographically protected websites, e-mail servers, and virtual private networks, according to an advisory issued early Thursday morning. The bug allows attackers to force vulnerable end-user applications into treating an invalid certificate as a legitimate transport layer security (TLS) or secure sockets layer (SSL) credential. As a result, adversaries with the ability to monitor a connection between the end user and trusted server could intercept or even modify data passing between them.”
Related posts:
China Broadcasts "Confession" of Chinese-American Blogger
Massachusetts Snatches Child Over Psychiatric Treatment Disagreement
‘Peace Through Strength’ Is a Racket
Another Hypocritical Leftist Caught with His Hand in the Tax-Haven Cookie Jar
While questioning him, FBI shoots and kills man connected to Marathon bombing suspect
Target confirms up to 40 million credit and debit cards are at risk
Ebay has added Virtual Currency to their Coins & Paper money category
Xapo Moves to Switzerland Citing Customer Privacy Concerns
Mastercard and Visa Start Banning VPN Providers
Mt. Gox Funds at Wells Fargo Have Been Seized
IRS Tyranny Against Swiss Bankers Halted By Federal Juries
Directed History of the Swiss Tax Settlement
The One Place They Can’t “Bail In”
A Treasure Hunt Within a Treasure Hunt
11-Year-Old Girl Banned From Selling Cupcakes By Bureaucrats