
“There’s a critical vulnerability in some versions of the widely used OpenSSL code library that in some cases allows attackers to impersonate cryptographically protected websites, e-mail servers, and virtual private networks, according to an advisory issued early Thursday morning. The bug allows attackers to force vulnerable end-user applications into treating an invalid certificate as a legitimate transport layer security (TLS) or secure sockets layer (SSL) credential. As a result, adversaries with the ability to monitor a connection between the end user and trusted server could intercept or even modify data passing between them.”
Related posts:
Listen to Patraeus?
U.S. Court: DOE Can't Charge For Non-Existent Nuclear Waste Storage
Kansas Couple SWAT Raided After Tea Was Mistaken for Marijuana
John McCain finally admits Ron Paul was right: Iraq War was a “mistake”
Rep. Peter King calls Rand Paul’s remarks on Snowden ‘absolutely disgraceful’
US has Already Ceded Dominance in Bitcoin Trading
Bond Investors Partying Like It’s … 1746?
I Bought Bitcoin In Person And Here's What Happened
Police Crackdown at Burning Man Alarms the Community
Scientists invent contact lenses that bestow telescopic vision
Zimbabwean Finance Minister Says the Country Has Just $217 In The Bank
Bitcoin Violates Numerous Laws According to Indonesia Central Bank
New anti-euro party forms in Germany
Raisons d'État: Justifying Assassination and Murder of American Citizens
George Clooney Arrives at the Bank of England