SSH protects the world’s most sensitive networks. It just got a lot weaker - eviltoast
  • netburnr@lemmy.world
    link
    fedilink
    English
    arrow-up
    46
    ·
    11 months ago

    [For Terrapin to be viable, the connection it interferes with also must be secured by either “ChaCha20-Poly1305” or “CBC with Encrypt-then-MAC,” both of which are cipher modes added to the SSH protocol (in 2013 and 2012, respectively

    Well thats easy then, just change your allowed ciphers.

    • ColeSloth@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      1
      ·
      11 months ago

      You’ll also have to be connecting to unknown networks or be the subject of a very targeted hacker. If you don’t connect to “free wifi” at the airport no one is going to get to position themselves as the middle man in order to do this attack on you very easily.