Newly-Found 'FREAK' Online Security Flaw Stems From 1990s

Advertisement
By Agence France-Presse | Updated: 7 March 2015 11:59 IST

A newly discovered Internet security flaw could leave many websites vulnerable to hackers because of weak US encryption standards in the 1990s, researchers said Tuesday.

The flaw dubbed "FREAK" could leave thousands of websites open to attacks if the problem is not patched, according to papers released by French and US researchers.

The flaw was discovered by a team led by Karthikeyan Bhargavan at INRIA in Paris -- the French Institute for Research in Computer Science and Automation -- and disclosure coordinated by Matthew Green, a cryptographer at Johns Hopkins University.

Advertisement

A research paper said the flaw comes from "a class of deliberately weak export cipher suites... introduced under the pressure of US government agencies to ensure that the NSA would be able to decrypt all foreign encrypted communication."

Green said in a blog post that even some sites maintained by the National Security Agency and FBI appeared to be vulnerable.

"Since the NSA was the organization that demanded export-grade crypto, it's only fitting that they should be the first site affected by this vulnerability," Green said.

Advertisement

Green and other researchers said the flaw stems from US government-imposed standards for encryption in software that was exported -- a short-lived effort to allow the United States to be able to access software exported to unfriendly regimes.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Android, Apple, Internet, Laptops, PC, FREAK
Advertisement

Related Stories

Popular Mobile Brands
  1. iQOO 15 Vapour Chamber Cooling System Performance Teased Ahead of Launch
  2. Oppo Reno 15, Reno 15 Pro Key Specifications Tipped Ahead of Launch
  3. Moto G100 (2025) Launched With Snapdragon 7s Gen 2 SoC, 7,000mAh Battery
  4. Nothing Phone 3a Lite Tipped to Launch Soon in These Two Colourways
  5. iQOO Z10R 5G With Dimensity 7360-Turbo Launched After Indian Variant Debuts
  6. Google to Invest $15 Billion to Set Up AI-Focused Data Centre in India
  1. JPMorgan Plans to Launch Crypto Asset Trading Services
  2. Nothing Phone Users Can Now Quickly 'Share' Any Content With Essential Space
  3. Samsung Patent Document Hints at 'Self-Healing' Screen for Foldable Phones: Report
  4. Nvidia DGX Spark Supercomputer With Grace Blackwell Chipset to Go on Sale Starting October 15
  5. Bhutan Migrates National ID System to Ethereum Blockchain
  6. OnePlus 15 Battery, Charging Specifications Leaked; Could Launch Soon
  7. Instagram Boosts Teen Safety, Sets PG-13 Content Limits for All New Teen Accounts
  8. Aan Paavam Pollathatu OTT Release Details: Know When and Where to Watch Tamil Movie Online
  9. Mirage to Release on OTT Platforms Soon: Everything You Need to Know About This Malayalam Crime Thriller Film
  10. How To Train Your Dragon Now Streaming on OTT: Know When and Where to Watch the Live-Action Film Online
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.