Wednesday, 26. October 2011

THC-SSL-DOS tool targets secure connections


The THC-SSL-DOS tool, which was released today, purportedly exploits a flaw in Secure Sockets Layer (SSL) renegotiation protocol by overwhelming the system with multiple requests for secure connections. SSL renegotiation allows websites to create a new security key over an already established SSL connection.

A German group known as Hackers Choice said that it released the exploit to bring attention to flaws in SSL, which allows sensitive data to flow between websites and an individual user's computer without being intercepted.

hitb.org

... Comment