FREAK

lore

cryptographysecurity

A 2015 attack forcing servers to use weak, factorable export-grade RSA keys.

Factoring RSA Export Keys exploited leftover 1990s export ciphers: an attacker could force a downgrade to 512-bit RSA, factor the key, and impersonate the server. It was a direct legacy of old US crypto export restrictions.

Also known as: FREAK, Factoring RSA Export Keys, CVE-2015-0204

Sources

  • CVE-2015-0204 (2015)

All glossary entries