Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
lambdafu
on Dec 18, 2023
|
parent
|
context
|
favorite
| on:
Terrapin Attack for prefix truncation in SSH
ChaPoly was added in 2013, but the weird KEX is even older, dating back all the way to 1998 in SSHv2. And surprisingly, the attack only works with the "better" symmetric ciphers that do INT-CTXT instead of INT-PTXT.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: