Security · 4h ago
Terrapin Attack Exploits SSH Handshake to Weaken Security
Researchers at Ruhr University Bochum disclosed the Terrapin attack (CVE-2023-48795), which exploits SSH's handshake to delete messages without detection. By injecting an ignorable message during unencrypted negotiation, attackers can remove extension info, downgrading security features. The attack affects specific encryption modes but does not decrypt data.
Meridian48 take
The attack highlights how protocol seams, not ciphers, often break security, and underscores the need for careful handshake design.
ssh-vulnerabilityterrapin-attack