Security News > 2015 > December > Back Door in Juniper Firewalls (Schneier on Security)

Back Door in Juniper Firewalls (Schneier on Security)
2015-12-21 12:52

Juniper has warned about a malicious back door in their firewalls that automatically decrypts VPN traffic. It's been there for years. Hopefully details are forthcoming, but the folks at Hacker News have pointed to this page about Juniper's use of the DUAL_EC_DBRG random number generator. For those who don't immediately recognize that name, it's the pseudo-random-number generator that was back-doored...


News URL

https://www.schneier.com/blog/archives/2015/12/back_door_in_ju.html

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Juniper 27 0 227 223 49 499