WATCH OUT FOR…
20-year-old internet bug Logjam
What happened?
Security researchers found another severe flaw in the TLS technology that encrypts sensitive data being sent between web servers and browsers. It follows the discovery of the FREAK bug in March (https://freakattack.com), which also weakens TLS, making it easier for hackers to steal personal information from people browsing the web (see News, page 6, Issue 445).
The new flaw, called Logjam, was identified by security experts from a number of universities and organisations, including Microsoft Research, the University of Michigan and Baltimore’s Johns Hopkins University. Like FREAK, the flaw has existed since the mid-Nineties, but it’s not known whether hackers have exploited it. Researchers said it was more likely that it had been used by governments for surveillance than hackers to…
