General

Critical security vulnerabilities in the Radicle network protocol

The Radicle peer-to-peer code-collaboration project has disclosed two critical vulnerabilities in the network protocol used by Radicle nodes. The first flaw is that the network protocol used by Radicle "does not give the confidentiality it was expected to give", which allows anyone who can observe the network between two nodes to read the data exchanged. The second is that peer authentication is broken and allows impersonation, so an attacker can spoof their Node ID and read private repositories they should…

Quelle: Originalartikel öffnen

AI Assistant
Context loaded: Critical security vulnerabilities in the Radicle network pro