“There’s a critical vulnerability in some versions of the widely used OpenSSL code library that in some cases allows attackers to impersonate cryptographically protected websites, e-mail servers, and virtual private networks, according to an advisory issued early Thursday morning. The bug allows attackers to force vulnerable end-user applications into treating an invalid certificate as a legitimate transport layer security (TLS) or secure sockets layer (SSL) credential. As a result, adversaries with the ability to monitor a connection between the end user and trusted server could intercept or even modify data passing between them.”
Related posts:
Travelers Forego 38 Million Trips to Avoid Hassles
After seven years, exactly one person gets off the gov’t no-fly list
As Long As You Don't Eat, Price Inflation Is Under Control
F-35 Stealth Fighter Is Too Heavy and Slow, So the Pentagon Made Its Performance Tests Easier
Former US Treasury Official: 'Banks Move To Enslave Humanity'
Who Built the Syrian Electronic Army?
Russians, Americans Take Part in Joint Air Force Counter-Terror Drill
Twelve States ask SCOTUS to challenge EPA on 'clean air' CO2 regulation
International Bank Transfers: Banks’ Ugly Secret and Why Bitcoin Really Matters
US Killed Hundreds of Children in Afghanistan, Says New Report -- US Rejects Report
During the shutdown, some scientists can't talk about science
Cop Fatally Shot Unarmed And Mentally Ill Man, Forbade Family from Giving Him CPR
U.S. Welfare Spending: 4 Times the Amount Necessary to End Poverty
CoinLaw: lawyer's consultations and advice for Bitcoin
The Lifespan of Storage Media