
OpenSSL DoS Flaw Lets Unauthenticated Attackers Trigger Massive Memory Allocation
A newly disclosed critical weakness in OpenSSL lets an attacker crash a server without ever completing a handshake or proving their identity. Documented by the Okta Red Team, named “HollowByte,” the flaw takes advantage of how OpenSSL reserves memory during the earliest stage of a TLS connection, allowing a payload of just 11 bytes to […]
The post OpenSSL DoS Flaw Lets Unauthenticated Attackers Trigger Massive Memory Allocation appeared first on Cyber Security News.