FREAK
lorecryptographysecurity
A 2015 attack forcing servers to use weak, factorable export-grade RSA keys.
Factoring RSA Export Keys exploited leftover 1990s export ciphers: an attacker could force a downgrade to 512-bit RSA, factor the key, and impersonate the server. It was a direct legacy of old US crypto export restrictions.
Also known as: FREAK, Factoring RSA Export Keys, CVE-2015-0204
Sources
- CVE-2015-0204 (2015)