Protect Yourself from NSA Attacks on 1024-bit DH

Welcome to the Precious Metals Bug Forums

Welcome to the PMBug forums - a community supported watering hole for folks interested in gold, silver, precious metals, sound money, investing, market and economic news, central bank monetary policies, politics and more.

Register a free account to join the discussions. When you register an account and log in, you may enjoy additional benefits including access to market data/charts and additional members only rooms (including one for trade/barter with the community).

pmbug

Your Host
Administrator
Benefactor
Messages
21,719
Reaction score
9,182
Points
268
Location
Texas

More: https://www.eff.org/deeplinks/2015/10/how-to-protect-yourself-from-nsa-attacks-1024-bit-DH

When you browse the web and visit any website with a "secure" connection, like say your bank or any commercial site like Amazon, you will be connected with an SSL connection. The web address will show as https:\\... The article is saying that the cryptography underlying some implementations for that connection is compromised and has been for some time. Click the link and the article gives you some pretty simple steps to disable the vulnerability from your browser. It doesn't disable your ability to use SSL or secure connections, it just ensures that when you do, it's really secure and not using a compromised routine.

Fixing my FireFox browser literally took me less than 30 seconds.

 
When I did as the linked document instructed, I got a list showing the two ".DHE_" files, plus 10 more ".DHE_" files. I disabled the 2, but left the other 10 as is. Anyone know if I should disable them, too?
 
Only disable the 2 mentioned. That will disable the problematic 1024 DH routines.
 
Cookies are required to use this site. You must accept them to continue using the site. Learn more…