FierceCIOFierceCIOTechWatchFierceMobileITFierceContentManagement   FierceVoIPFierceHealthITFierceFinanceIT
About | Sample | Privacy

Tools to crack flawed cryptographic keys circulate

Tools
Tags
Vulnerability
Security Advisory
Debian Project
Digital Keys
Cryptographic Keys
Random Number Generator

A newly disclosed vulnerability in the random number generator used by the Debian Project to produce digital keys is making its repercussions felt around the world. The flaw makes it relatively easy to compute the correct cryptographic keys, which are used for services such as Secure Shell (SSH) and Secure Socket Layer (SSL). There are reports of 2048 bit keys being generated in two hours on a cluster consisting of just 31 Xeon cores. In the meantime, users and system administrators are urged to patch their systems and to regenerate all keys produced on Debian systems after September 2006--when builds that included the flaw were first made available.

For more on the random number generator flaw:
- check out the Debian Security Advisory

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.

More information about formatting options

What is 33 + 34?
To combat spam, please solve the math question above.