Cloudflare releases defense for quantum downgrade attacks on IPsec
Cloudflare introduced a new beta feature for its IPsec products to block attackers who attempt “quantum downgrade” attacks, which force connections to use weaker, pre-quantum cryptography. This fix, developed alongside the Internet Engineering Task Force, is now live in Cloudflare’s IPsec lineup. The safeguard aims to keep network traffic protected as the world transitions to cryptography that resists quantum computer attacks, even when older methods are still supported for compatibility.
- Beta rollout now live across Cloudflare IPsec products
- Blocks attackers downgrading post-quantum encryption
- Developed in partnership with the IETF
- Targets a previously under-addressed protocol flaw
Sources covering this
In this story
More in Cybersecurity
Critical zero-days in Citrix NetScaler exploited, patches released
Citrix has confirmed that two critical zero-day vulnerabilities affecting NetScaler ADC and Gateway devices have been exploited.
Dutch police arrest former hacker in ShinyHunters probe
Dutch police have arrested Pepijn van der Stap, a previously convicted hacker, in connection with an ongoing investigation into the…
Apple fixes CoreGraphics flaw after targeted attacks
Apple has released security updates for iOS, iPadOS, and macOS to fix a CoreGraphics vulnerability that may have been used in highly…
New Spectre BTR attack exposes Linux root password hashes
Researchers have unveiled a new Spectre Variant 2 attack, named Branch Target Reuse (BTR), that can extract root password hashes from…