Live data from Hacker News

OpenSSL: How to Configure LS Groups to Be Resistant to the DHEat Attack

openssl.org

1–2 of 2 posts

Re: OpenSSL: How to Configure LS Groups to Be Resistant to the DHEat Attack

#2
... The CVE-2002-20001 (a.k.a DHEat attack) vulnerability inherent to the support of the Diffie-Hellman (DH) and Elliptic Curve Diffie-Hellman (ECDH) key exchanges in TLS and other protocols provides a way for an attacker to cause high CPU usage on servers with relatively low effort on the client side. ...