Security News > 2015 > March > FREAK: Security Rollback Attack Against SSL (Schneier on Security)

FREAK: Security Rollback Attack Against SSL (Schneier on Security)
2015-03-06 16:46

This week we learned about an attack called "FREAK" -- "Factoring Attack on RSA-EXPORT Keys" -- that can break the encryption of many websites. Basically, some sites' implementations of secure sockets layer technology, or SSL, contain both strong encryption algorithms and weak encryption algorithms. Connections are supposed to use the strong algorithms, but in many cases an attacker can force...


News URL

https://www.schneier.com/blog/archives/2015/03/freak_security_.html