* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, March 14, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Why Cops Are Confident They Know Why Nancy Guthrie Was Targeted

    Labrinth Calls Out the Entertainment Industry and ‘Euphoria’ in Mysterious Post

    The Try Guys Embark on an Unforgettable Journey Through the Soul of New Orleans: Jazz, Burlesque, Voodoo, and Beyond!

    Get Inspired This Weekend with Fresh Ideas for Going Green

    Seattle’s Wing Luke Museum Announces Exciting New Executive Director

    Golden Nugget Owner Eyes Major Acquisition of Caesars Entertainment

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Tiny Titans: Unveiling Young Massive Star Clusters in Nearby Starburst Galaxies

    DexCom’s Next Chapter: Unlocking Exciting Growth in Glucose Monitoring Technology

    Is Keysight Technologies (KEYS) Powering the Future of the Technology Sector?

    Eight Midwestern Universities Unite to Launch Innovative Technology Hub in San Francisco

    Top Industry Experts Reveal Crucial Insights on Globant SA and Uber Technologies

    JIATF 401 Publishes Guide to Counter-Drone Technology and Privacy Protections – U.S. Department of War (.gov)

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Why Cops Are Confident They Know Why Nancy Guthrie Was Targeted

    Labrinth Calls Out the Entertainment Industry and ‘Euphoria’ in Mysterious Post

    The Try Guys Embark on an Unforgettable Journey Through the Soul of New Orleans: Jazz, Burlesque, Voodoo, and Beyond!

    Get Inspired This Weekend with Fresh Ideas for Going Green

    Seattle’s Wing Luke Museum Announces Exciting New Executive Director

    Golden Nugget Owner Eyes Major Acquisition of Caesars Entertainment

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Tiny Titans: Unveiling Young Massive Star Clusters in Nearby Starburst Galaxies

    DexCom’s Next Chapter: Unlocking Exciting Growth in Glucose Monitoring Technology

    Is Keysight Technologies (KEYS) Powering the Future of the Technology Sector?

    Eight Midwestern Universities Unite to Launch Innovative Technology Hub in San Francisco

    Top Industry Experts Reveal Crucial Insights on Globant SA and Uber Technologies

    JIATF 401 Publishes Guide to Counter-Drone Technology and Privacy Protections – U.S. Department of War (.gov)

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

In a first, cryptographic keys protecting SSH connections stolen in new attack

November 13, 2023
in Technology
In a first, cryptographic keys protecting SSH connections stolen in new attack
Share on FacebookShare on Twitter

In a first, cryptographic keys protecting SSH connections stolen in new attack

Getty Images

For the first time, researchers have demonstrated that a large portion of cryptographic keys used to protect data in computer-to-server SSH traffic are vulnerable to complete compromise when naturally occurring computational errors occur while the connection is being established.

Underscoring the importance of their discovery, the researchers used their findings to calculate the private portion of almost 200 unique SSH keys they observed in public Internet scans taken over the past seven years. The researchers suspect keys used in IPsec connections could suffer the same fate. SSH is the cryptographic protocol used in secure shell connections that allows computers to remotely access servers, usually in security-sensitive enterprise environments. IPsec is a protocol used by virtual private networks that route traffic through an encrypted tunnel.

The vulnerability occurs when there are errors during the signature generation that takes place when a client and server are establishing a connection. It affects only keys using the RSA cryptographic algorithm, which the researchers found in roughly a third of the SSH signatures they examined. That translates to roughly 1 billion signatures out of the 3.2 billion signatures examined. Of the roughly 1 billion RSA signatures, about one in a million exposed the private key of the host.

While the percentage is infinitesimally small, the finding is nonetheless surprising for several reasons—most notably because most SSH software in use has deployed a countermeasure for decades that checks for signature faults before sending a signature over the Internet. Another reason for the surprise is that until now, researchers believed that signature faults exposed only RSA keys used in the TLS—or Transport Layer Security—protocol encrypting Web and email connections. They believed SSH traffic was immune from such attacks because passive attackers—meaning adversaries simply observing traffic as it goes by—couldn’t see some of the necessary information when the errors happened.

The researchers noted that since the 2018 release of TLS version 1.3, the protocol has encrypted handshake messages occurring while a web or email session is being negotiated. That has acted as an additional countermeasure protecting key compromise in the event of a computational error. Keegan Ryan, a researcher at the University of California San Diego and one of the authors of the research, suggested it may be time for other protocols to include the same additional protection.

In an email, Ryan wrote:

Even though the SSH protocol has been around for almost 18 years and is extremely widely deployed, we’re still finding new ways to exploit errors in cryptographic protocols and identifying vulnerable implementations. In our data, about one in a million SSH signatures exposed the private key of the SSH host. While this is rare, the massive amount of traffic on the Internet implies that these RSA faults in SSH happen regularly. Even though the vast majority of SSH connections are not affected, it’s still important that these failures are defended against. It only takes one bad signature in an unprotected implementation to reveal the key.

It’s fortunate that the most popular SSH implementations include countermeasures to prevent RSA signature faults from leading to catastrophic key leakage, but implementations that did not were still common enough to appear in our data.

The new findings are laid out in a paper published earlier this month titled “Passive SSH Key Compromise via Lattices.” It builds on a series of discoveries spanning more than two decades. In 1996 and 1997, researchers published findings that, taken together, concluded that when naturally occurring computational errors resulted in a single faulty RSA signature, an adversary could use it to compute the private portion of the underlying key pair.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Ars Technica – https://arstechnica.com/?p=1983026

Tags: cryptographicFirsttechnology
Previous Post

Daily Telescope: An amazing, colorful view of the Universe

Next Post

We’ll know soon if Astra—the commercial space company—has a future

Satellite Images Reveal Widespread Structural Devastation Across Iran Amid Ongoing Conflict

March 14, 2026

Scientists Reveal Astonishing New Secret Behind Cats’ Perfect Landings

March 14, 2026

Global Warming Theory Confronts a Powerful New Challenge

March 14, 2026

Influencers want to adopt the ‘analog lifestyle’ for 2026 – The Detroit News

March 14, 2026

MLB The Show 26′ Aims to Hit Home Run with World Baseball Classic Boost at Launch

March 14, 2026

Discover the Future of Nevada County’s Economy: Join the Community Forum on March 20

March 14, 2026

Why Cops Are Confident They Know Why Nancy Guthrie Was Targeted

March 14, 2026

Israeli strike kills 12 healthcare workers in southern Lebanon – The Guardian

March 14, 2026

Trump’s War Alliance With Israel Is Reshaping the Middle East. But It Carries Risks. – The New York Times

March 14, 2026

Tiny Titans: Unveiling Young Massive Star Clusters in Nearby Starburst Galaxies

March 14, 2026

Categories

Archives

March 2026
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Feb    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,118)
  • Economy (1,136)
  • Entertainment (22,013)
  • General (20,408)
  • Health (10,174)
  • Lifestyle (1,150)
  • News (22,149)
  • People (1,139)
  • Politics (1,154)
  • Science (16,352)
  • Sports (21,638)
  • Technology (16,119)
  • World (1,129)

Recent News

Satellite Images Reveal Widespread Structural Devastation Across Iran Amid Ongoing Conflict

March 14, 2026

Scientists Reveal Astonishing New Secret Behind Cats’ Perfect Landings

March 14, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version