Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting the Windows CryptoAPI Vulnerability

Summary

Trail of Bits dissects the NSA-discovered Windows CryptoAPI flaw in Crypt32.dll, where improper ECC curve parameter validation lets attackers forge HTTPS and code-signing certificates.
Published
Collected

original ↗

Related coverage

back