Sunday, January 19, 2020

TLS

TLS uses both asymmetric and symmetric encryption. Initial exchange is done using asymmetric encryption but bulk data encryption requires symmetric.

TLS 1.3 is the current latest version.

SSL itself is also vulnerable to a number of other potential attacks including BEAST, BREACH, FREAK, and Heartbleed.

TLS/SSL Vulnerabilities

POODLE:  The SSL 3.0 vulnerability is in the Cipher Block Chaining (CBC) mode. Block ciphers require blocks of fixed length. If data in th...