NSA Urges SysAdmins to Replace Obsolete TLS Protocols

The NSA released new guidance providing system administrators with the tools to update outdated TLS protocols. Continue reading NSA Urges SysAdmins to Replace Obsolete TLS Protocols

Raccoon Attack: Researchers Find A Vulnerability in TLS 1.2

Bad news: there’s a vulnerability in TLS 1.2. Good news: researchers say it’s “very hard to exploit” and major vendors have already released security patches for it. A team of…
The post Raccoon Attack: Researchers Find A Vulnerability in TLS 1.2 app… Continue reading Raccoon Attack: Researchers Find A Vulnerability in TLS 1.2

Detecting GnuTLS CVE-2020-13777 using Zeek

By Johanna Amann, Software Engineer, Corelight CVE-2020-13777 is a high severity issue in GnuTLS. In a nutshell, GnuTLS versions between 3.6.4 (released 2018-09-24) and 3.6.14 (2020-06-03) have a serious bug in their session resumption code, which lets… Continue reading Detecting GnuTLS CVE-2020-13777 using Zeek

Update Your Browser to Support TLS 1.2 and WPA2-Enterprise

Organizations should be aware of an important update to TLS. TLS 1.2 is the most recent update that builds on top of TLS 1.0 and TLS 1.1 to increase network security. Updating your browsers and OS to TLS 1.2 is …
Read More
The post Update Your Brows… Continue reading Update Your Browser to Support TLS 1.2 and WPA2-Enterprise

Twitter will deprecate support for TLS 1.0, TLS 1.1 on July 15

All Twitter connections will require TLS 1.2 starting Monday On Monday, July 15, Twitter will drive another nail into the coffin of TLS 1.0 and TLS 1.1. The social media…
The post Twitter will deprecate support for TLS 1.0, TLS 1.1 on July 15 appear… Continue reading Twitter will deprecate support for TLS 1.0, TLS 1.1 on July 15