‘Crypto Bug of the Year’ Fixed — Update Java NOW

‘Crypto Bug of the Year’ Fixed — Update Java NOW

A ridiculously dumb flaw in Java’s signature checking code is patched. This isn’t some crufty legacy Sun code, but actual garbage Oracle sloppiness that’s causing IT people to chase their tails yet again ...
Security Boulevard

Day 1 Detection: CVE-2020-0601, a community, and 40 Lines of code

By Richard Bejtlich, Principal Security Strategist, Corelight On Tuesday, Jan. 14, 2020, the world learned of the vulnerability du jour, CVE-2020-0601. As explained by Microsoft, “a spoofing vulnerability exists in the way ...