Breaking News

G.SKILL Demo New Memory Solutions for Gaming, Server, AI, Workstation Applications at Computex 2026 LIAN LI Launches HydroShift II OLED Curved 360 AIO LIAN LI Unveils O11 VISION-M CORSAIR PRO launches AI Workstations and Servers ASUS Announces T1 GeForce RTX 5070 and RTX 5060 Ti Graphics Cards

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Windows Also Vulnerable to FREAK Encryption Flaw

Windows Also Vulnerable to FREAK Encryption Flaw

Enterprise & IT Mar 6,2015 0

Previously thought limited to Apple and Google browsers, the FREAK flaw reported some weeks ago leaves communications between affected users and websites open to interception. Microsoft has confirmed that Windows machines are also vulnerable to a decade-old encryption flaw.

According to a Microsoft advisory, a security feature bypass vulnerability in Secure Channel (Schannel) affects all supported releases of Microsoft Windows. The company's investigation has verified that the vulnerability could allow an attacker to force the downgrading of the cipher suites used in an SSL/TLS connection on a Windows client system. The vulnerability facilitates exploitation of the publicly disclosed FREAK technique. Device users are vulnerable to having their electronic communications intercepted when visiting any of hundreds of thousands of websites, including Whitehouse.gov, NSA.gov and FBI.gov.

The flaw was previously thought to be limited to Apple's Safari and Google's Android browsers.

Microsoft said it will likely address the flaw in its regularly scheduled Patch Tuesday update or with an out-of-cycle patch. In the meantime, Microsoft suggested disabling the RSA export ciphers.

The FREAK (Factoring RSA Export Keys) flaw surfaced a few weeks ago when a group of researchers discovered they could force websites to use intentionally weakened encryption, which they were able to break within a few hours. Once a site's encryption was cracked, hackers could then steal data such as passwords, and hijack elements on the page.

Tags: Security
Previous Post
ASUS Announces New GR8S Steam Machine
Next Post
Fujitsu Technology Recognizes Faces Appearing In Low-Resolution Images

Related Posts

  • HP Threat Research Shows Attackers Exploiting Zero‐Day Vulnerability Before Enterprises Can Patch

  • Samsung Develops New Security Chip For Mobile Devices

  • Samsung Says Your Galaxy S20’s Secure Processor Protects it Against Hardware Attacks

  • SK Telecom and Samsung Unveil the First QRNG-Powered 5G Smartphone

  • AMD Downplays Reported Side Channel Vulnerabilities in Zen Chips

  • RSA 2020: Intel Announces Compute Lifecycle Assurance Momentum, Previews New Security Capabilities

  • Samsung Introduces Data Security Chip Solution for Mobile Devices

  • Google Adds New Security Measures for Nest Accounts

Latest News

G.SKILL Demo New Memory Solutions for Gaming, Server, AI, Workstation Applications at Computex 2026
PC components

G.SKILL Demo New Memory Solutions for Gaming, Server, AI, Workstation Applications at Computex 2026

LIAN LI Launches HydroShift II OLED Curved 360 AIO
Cooling Systems

LIAN LI Launches HydroShift II OLED Curved 360 AIO

LIAN LI Unveils O11 VISION-M
Cooling Systems

LIAN LI Unveils O11 VISION-M

CORSAIR PRO launches AI Workstations and Servers
Cooling Systems

CORSAIR PRO launches AI Workstations and Servers

ASUS Announces T1 GeForce RTX 5070 and RTX 5060 Ti Graphics Cards
GPUs

ASUS Announces T1 GeForce RTX 5070 and RTX 5060 Ti Graphics Cards

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

JSAUX 65Wh Rog Ally Battery

JSAUX 65Wh Rog Ally Battery

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed