EPISODE · Dec 30, 2008 · 50 MIN
Predictable RNG in the vulnerable Debian OpenSSL package (25c3)
from Chaos Computer Club - 25C3: nothing to hide (ogg) · host Luciano Bello, Maximiliano Bertacchini
Recently, the Debian project announced an OpenSSL package vulnerability which they had been distributing for the last two years. This bug makes the PRNG predictable, affecting the keys generated by openssl and every other system that uses libssl (eg. openssh, openvpn). about this event: http://events.ccc.de/congress/2008/Fahrplan/events/2995.en.html
What this episode covers
Recently, the Debian project announced an OpenSSL package vulnerability which they had been distributing for the last two years. This bug makes the PRNG predictable, affecting the keys generated by openssl and every other system that uses libssl (eg. openssh, openvpn). about this event: http://events.ccc.de/congress/2008/Fahrplan/events/2995.en.html
NOW PLAYING
Predictable RNG in the vulnerable Debian OpenSSL package (25c3)
No transcript for this episode yet
Similar Episodes
Mar 26, 2026 ·1m
Mar 19, 2026 ·34m
Feb 18, 2026 ·11m
Feb 11, 2026 ·45m