Symantec API Flaws reportedly let attackers steal Private SSL Keys and Certificates

Discussion in 'News Aggregator' started by Swati Khandelwal, 28 Mar 2017.

  1. A security researcher has disclosed critical issues in the processes and third-party API used by Symantec certificate resellers to deliver and manage Symantec SSL certificates. The flaw, discovered by Chris Byrne, an information security consultant and instructor for Cloud Harmonics, could allow an unauthenticated attacker to retrieve other persons' SSL certificates, including public and
    [​IMG]
    [​IMG]

    Continue reading...
     

Share This Page

Loading...