Newly-discovered Security Bug has Gone to the Dogs

Newly-discovered Security Bug has Gone to the Dogs

Newly-discovered Security Bug has Gone to the DogsAll this time, when I thought of the word “poodle,” I imagined white mounds of curly hair, two pink bows, one in each ear, and a cotton-ball tail…not anymore. Thanks to the newly-discovered “Poodle” attack, a security bug used in encryption technology that can allow attackers to take over accounts including email, banking and other services, now the word “poodle” conjures up images of a cyber Cujo.

After discovering Padding Oracle On Downloaded Legacy Encryption, or Poodle, web browser and server software creators are advising users to disable an 18-year old encryption standard – SSL 3.0. This is because security experts are saying that attackers can use Poodle to steal browser cookies (That's what I call Mollie’s dog treats: “cookies.” Lots of dog references with this bug...and it's not even a flea or tick!)

Supposedly Poodle isn’t as serious as Heartbleed or Shellshock because these required hackers to have privileged access to networks. Nevertheless, with Poodle, SSL 3.0 is no longer secure, prompting browsers, such as Mozilla, to disable it in their next version of Firefox, scheduled to be released on November 25 (just in time for Cyber Monday, might I add).

About the Author

Ginger Hill is Group Social Media Manager.

Featured

  • Survey Shows Election Anxiety Crosses Party Lines

    New reports of election worker intimidation are raising concerns about election interference. A majority of Americans (71%) are worried about voter intimidation or safety at the polls, and 75% want security cameras at their voting place, according to a new national survey. Read Now

  • 66 Percent of Cybersecurity Pros Say Job Stress is Growing

    Sixty-six percent of cybersecurity professionals say their role is more stressful now than it was five years ago, according to the newly released 2024 State of Cybersecurity survey report from ISACA, a global professional association advancing trust in technology. Read Now

  • Live from GSX 2024: Post-Show Recap

    Another great edition of GSX is in the books! We’d like to thank our great partners for this years event, NAPCO, LVT, Eagle Eye Networks and Hirsch, for working with us and allowing us to highlight some of the great solutions the companies were showcasing during the crowded show. Read Now

    • Industry Events
    • GSX
  • Research: Cybersecurity Success Hinges on Full Organizational Support

    Cybersecurity is the top technology priority for the vast majority of organizations, but moving from aspiration to reality requires a top-to-bottom commitment that many companies have yet to make, according to new research released today by CompTIA, the nonprofit association for the technology industry and workforce. Read Now

Featured Cybersecurity

Webinars

New Products

  • EasyGate SPT and SPD

    EasyGate SPT SPD

    Security solutions do not have to be ordinary, let alone unattractive. Having renewed their best-selling speed gates, Cominfo has once again demonstrated their Art of Security philosophy in practice — and confirmed their position as an industry-leading manufacturers of premium speed gates and turnstiles. 3

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area. 3

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3