News

POODLE SSLv3 Vulnerability

POODLE SSLv3 Vulnerability

On October 14th, 2014, a vulnerability in version 3 of the SSL encryption protocol was disclosed. This vulnerability, dubbed POODLE (Padding Oracle On Downgraded Legacy Encryption), allows an attacker to read information encrypted with this version of the protocol in plain text using a man-in-the-middle attack. Although SSLv3 is an older version of the protocol which is mainly obsolete, many pieces of software still fall back on SSLv3 if better encryption options are not available. More importantly, it is possible for an attacker to force SSLv3 connections if it is an available alternative for both participants attempting a connection. The POODLE vulnerability affects any services or clients that make it possible to communicate using SSLv3. Because this is a flaw with the protocol design, and not an implementation issue, every piece of software that uses SSLv3 is vulnerable.

Read More

These Are The Sleepiest Parts Of The Internet

These Are The Sleepiest Parts Of The Internet

New York City is the city that never sleeps, and if a new study from the University of Southern California’s Viterbi School of Engineering is any indication, it’s home to plenty of active Internet connections around the clock. But there are plenty of places around the globe where the Internet actually does sleep at night.

Read More