home > posts > social @ 2023-08-16
2023-08-16

social @ 2023-08-16

Unix time stamps in OpenSSL handshakes are borking Windows clock settings https://arstechnica.com/security/2023/08/windows-feature-that-resets-system-clocks-based-on-random-data-is-wreaking-havoc/ by @dangoodin

The idea that random outbound TLS connections to untrusted third parties can reset the OS clock is wild. Possibly exploitable through SSRF vectors?


<< social @ 2023-08-24 social @ 2023-08-11 >>

Copyright 1998-2026 HD Moore