Stories
Slash Boxes
Comments

SoylentNews is people

SoylentNews is powered by your submissions, so send in your scoop. Only 12 submissions in the queue.

Submission Preview

Link to Story

SHA1 sunset will block millions from encrypted net, Facebook warns

Accepted submission by darkfeline at 2015-12-11 02:09:07
Security

http://arstechnica.com/security/2015/12/sha1-sunset-will-block-millions-from-encrypted-net-facebook-warns/ [arstechnica.com]

SHA1 certificates for secure SSL/TLS communications are deprecated due to known computational vulnerabilities. However, a forced deprecation will lock out many users who are unable to use stronger hashes such as SHA256. However however, if a fallback to SHA1 is provided (as Facebook is proposing), everyone will be vulnerable to SHA1 downgrade man-in-the-middle attacks.


Original Submission