Home / Companies / Cloudflare / Blog / Post Details
Content Deep Dive

New "Lucky Thirteen" SSL Vulnerabilities: CloudFlare Users Protected

Blog post from Cloudflare

Post Details
Company
Date Published
Author
Matthew Prince
Word Count
297
Company Posts That Month
8
Language
English
Hacker News Points
-
Post removed?
No
Summary

On February 4, 2013, a new SSL vulnerability known as the Lucky Thirteen was announced. Although TLS 1.1/1.2 do not fix this issue, it is theoretically difficult to exploit and requires creating numerous connections and measuring timing differences. CloudFlare's default SSL configuration protects against this attack by deprioritizing the vulnerable cipher. To ensure protection from the new vulnerability, users should upgrade their OpenSSL or NGINX versions when a patch is released and prioritize the RC4 cipher in their web server settings.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.