1. POODLE
    Padding Oracle on downgraded Legacy encryption. Involves TLS / SSL
  2. Heartbleed
    Openssl vulnerability allow attacker to obtain data from web server memory
  3. FREAK
    Factoring attack on RSA export keys. Man-in-the-middle attack to force downgrade of RSA key to weaker length.
  4. CCS injection
    Man-in-the-middle attack requires attacker to force openssl to a weaker method of keying
  5. Shellshock
    Bash Vulnerability - GNU Bash Remote Code Execution Vulnerability
  6. BEAST
    Browser Exploit Against SSL/TLS
Author
Phoenixelijah
ID
342798
Card Set
Description
Updated