SLOTH: Security Losses from Obsolete and Truncated Transcript Hashes (CVE-2015-7575)

2016-01-07 01:48:23 in Cryptography by Red Letter Security

"SLOTH is an acronym for the loss of security due to the use of obsolete and truncated hash constructions in mainstream Internet protocols. SLOTH is also a not-so-subtle reference to laziness in the protocol design community with regard to removing legacy cryptographic constructions."