Security Feed
  1. Archives

Apr 13 2026 Critical flaw in wolfSSL library enables forged certificate use

Source

A critical vulnerability in the wolfSSL SSL/TLS library can weaken security via improper verification of the hash algorithm or its size when checking Elliptic Curve Digital Signature Algorithm (ECDSA) signatures. [...]

Posted by Bill Toulas on Mon 13 April 2026 in BleepingComputer.

Tags: Security.

Categories

  1. Ars Technica
  2. AWS Security
  3. BleepingComputer
  4. Brian Krebs
  5. Bruce Schneier
  6. GCP Security
  7. Google Project Zero
  8. The Daily Swig
  9. The Guardian
  10. The Register
  11. Threatpost

Tag cloud

  • Security
  • Uncategorized
  • Security, Identity, & Compliance
  • Microsoft
  • Security Blog
  • Biz & IT
  • AI
  • Security & Identity
  • CryptoCurrency
  • Google
  • Announcements
  • Artificial Intelligence
  • Foundational (100)
  • Legal
  • A Little Sunshine
  • privacy
  • Apple
  • squid
  • Mobile
  • Hacking
  • Intermediate (200)
  • Advanced (300)
  • Technical How-to
  • LLM
  • vulnerabilities

Security Feed. Powered by Pelican and m.css. Code is available on GitLab.