Top 10 winner
LogJam
The Logjam (and Another) Vulnerability against Diffie-Hellman Key Exchange
Logjam lets a man-in-the-middle downgrade a TLS handshake to 512-bit export-grade Diffie-Hellman and then solve it, reading and altering the traffic. Because millions of servers reuse the same few primes, one huge precomputation per prime would let a state-level attacker passively decrypt a large share of HTTPS, SSH and VPN connections.
Record
- Document
- The Logjam (and Another) Vulnerability against Diffie-Hellman Key Exchange
- Published by
- Schneier on Security
- Date
- Topic
- Other
In the archive
Related sources
- Imperfect Forward Secrecy Whitepaper
- J. Alex Halderman, Nadia Heninger: Logjam: Diffie-Hellman, discrete logs, the NSA, and you
Tags
This page is the archive's own catalogue record. The research is the work of Schneier on Security, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .