Hacker News new | past | comments | ask | show | jobs | submit login
Early ChangeCipherSpec Attack (imperialviolet.org)
34 points by silenteh on June 5, 2014 | hide | past | favorite | 1 comment



What seems the most interesting is how Masashi Kikuchi has discovered this flaw: he seems to have used Coq and modelised a part of the states and transitions of the TLS handshake and then observed OpenSSL wasn't following this model. Very nice.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: