|    |    |    | Today: 22-Oct-2018 |

OpenSSH has user enumeration bug

July 18, 2016 | Posted in News

Blowfish is faster than SHA256, and that's a problem when servers talk back

A bug in OpenSSH allows an attacker to check whether user names are valid on a 'net-facing server - because the Blowfish algorithm runs faster than SHA256/SHA512.…




Source: OpenSSH has user enumeration bug

Taged in: enumeration, openssh