Sunday, April 24, 2022

Oracle patches a critical bug in Java 15 and above, which lets attackers forge TLS certificates and signatures, two-factor authentication messages, and more (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
Oracle patches a critical bug in Java 15 and above, which lets attackers forge TLS certificates and signatures, two-factor authentication messages, and more  —  A failure to sanity check signatures for division-by-zero flaws makes forgeries easy.  —  Organizations using newer versions …



No comments:

Post a Comment

Sources: after five Thinking Machines staff left, investors are rattled, potentially impacting fundraising; two researchers quit via Slack during an all-hands (The Information)

The Information : Sources: after five Thinking Machines staff left, investors are rattled, potentially impacting fundraising; two researc...