Terrapin — a vulnerability in the SSH protocol that can reduce the security of the connection.
A group of researchers from Ruhr University Bochum (Germany) has introduced a new technique for a MitM attack on SSH — Terrapin, which exploits a vulnerability (CVE-2023-48795) in the protocol. An attacker capable of conducting a MitM attack can block the transmission of a message setting protocol extensions during the connection negotiation phase to reduce the security level of the connection. A prototype toolkit for performing the attack has been published on GitHub. In the context of OpenSSH, the vulnerability […]
