this post was submitted on 20 Dec 2023
94 points (75.5% liked)
Technology
59978 readers
3659 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each another!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
[For Terrapin to be viable, the connection it interferes with also must be secured by either "ChaCha20-Poly1305" or "CBC with Encrypt-then-MAC," both of which are cipher modes added to the SSH protocol (in 2013 and 2012, respectively
Well thats easy then, just change your allowed ciphers.
ChaCha20-Poly1305 sounds like an auto-generated Reddit username.
You'll also have to be connecting to unknown networks or be the subject of a very targeted hacker. If you don't connect to "free wifi" at the airport no one is going to get to position themselves as the middle man in order to do this attack on you very easily.