Security News

OpenSSL Patches Critical Certificate Validation Vulnerability (Threatpost)
2015-07-09 13:44

A high-severity bug in OpenSSL was disclosed today, and it affects only organizations that installed an update released in June, and allows anyone with an untrusted TLS certificate to become a CA.

Severe OpenSSL bug that allows certificate forgery has been plugged (Help Net Security)
2015-07-09 13:43

The wait is over: the OpenSSL Project has issued security updates for the popular open-source implementation of the SSL and TLS protocols, and has shared some details about the high severity vulnerabi...

New OpenSSL versions squash LogJam bug (Help Net Security)
2015-06-12 08:37

The OpenSSL Project has pushed another update for the eponymous open-source cryptographic library. This one plugs several moderate bugs, one low one, and LogJam (CVE-2015-4000), which can be exploited...