Skip to main content
OpenSSL

OpenSSL

SoftwareWikipedia

Search complete. 99 mentions across 27 episodes found for "OpenSSL".

Sep 16, 2026

Michael HowardGUEST
57:44
So basically on Windows, it's to use the new S-channel stack.
Michael HowardGUEST
57:46
And in the case of Linux, you use OpenSSL 3.5, which has MLChem built into it.
Michael HowardGUEST
57:51
So you've got those two options are now available to you.
Michael HowardGUEST
57:54
So that's the data in transit taken care of.
Michael HowardGUEST
57:28
So basically on Windows, it's to use the new S-channel stack.
Michael HowardGUEST
57:31
And in the case of Linux, use OpenSSL 3.5, which has MLChem built into it.
Michael HowardGUEST
57:36
So you've got those two options are now available to you.
Michael HowardGUEST
57:38
Um, so that's, that's the data in transit taken care of.
Marc LaliberteHOST
7:08
Those have very standard libraries for handling SSH and handling SSH authentication, and this sounds like they rolled their own crypto or at least their own authentication library to introduce this issue.
Marc LaliberteHOST
7:20
'Cause I'm not aware of any, like, open SSH or OpenSSL or, like, any AuthD issues that could have caused this.
Marc LaliberteHOST
7:28
So it's interesting, um, seeing this pop up in a router that, in my opin- I mean, without knowing the specifics, but more often than not, they use standard libraries.
Marc LaliberteHOST
7:36
So that was interesting.
Dhruv BansalGUEST
25:26
Like that's an unfair characterization of the nature of this problem.
Dhruv BansalGUEST
25:30
Bugs like this have affected OpenSSL, which is something that like You're using right now, you and I, to record this video somewhere behind the scenes.
Dhruv BansalGUEST
25:37
We're using that piece of open source software to encrypt our communication over the internet.
Dhruv BansalGUEST
25:41
That had a zero day several years ago that was related to bad RNG that caused sessions to be able to be decryptable.
Andy HorngoldGUEST
26:14
You don't need an agent to do that.
Andy HorngoldGUEST
26:16
You could run an agent if you want to go really deep on pen testing like OpenSSL, for example.
Andy HorngoldGUEST
26:21
But just to check whether a TLS cipher, a weak TLS cipher is in use, you can use testssl.sh, just a tool that you can run and you'll be able to get the output.
Andy HorngoldGUEST
26:31
So using a combination of both the agent and then those deterministic tools as well gives you a pretty decent coverage of standard methodologies.
JohnHOST
1:07
It's about flexibility for ever-evolving AI tasks, and that's clearly resonated with a tech community hungry for scalable on-premises options.
JohnHOST
1:16
Alongside this, we're seeing a cascade of other advancements paving the way for more secure and efficient software, including an alpha release of OpenSSL four point one.
JohnHOST
1:25
OpenSSL now comes with GRACE and support for DTLS one point three, improving both future-proofing and encrypted communications, which is key in this era of sensitive data and cyber threats.
JohnHOST
1:37
These updates extend the security frontier and are likely to be welcomed by system admins and developers working in everything from finance to IoT.
JohnHOST
1:46
Never a space to lag behind.
Michael TunnellHOST
27:37
The main tool chain moves to BenUtils 2.47, GCC 16.2, and glibc 2.44.
Michael TunnellHOST
27:41
The book now uses Linux kernel 7.1.8, along with Python 3.14.7, Systemd 2.61.2, OpenSSL 4.0.1, core utils 9.11, and a bunch of other updated components.
Michael TunnellHOST
28:01
In total, 46 packages were updated and added since LFS 13.0, and the team says more than 200 commits went into the book between releases.
Michael TunnellHOST
28:09
There are also some security-related updates, but the reason I want to tell you about this is because I like covering Linux from scratch.
Josh BressersHOST
7:36
And I mean, I see this all the time, right? Where like you can point an LLM at literally any PHP or NPM project, almost any project.
Josh BressersHOST
7:44
It's going to just be a train wreck of findings, right? But now Curl or OpenSSL, those are different beasts.
Josh BressersHOST
7:50
Right.
Jaya BalooGUEST
7:50
100%.
Jaya BalooGUEST
7:51
And this is where we staked our reputation on.
Jaya BalooGUEST
7:53
We initially started with finding vulnerabilities in OpenSSL and then Curl.
Jaya BalooGUEST
7:57
But maybe we should rewind just a little bit and explain why we started looking for vulnerabilities in open source.
Jaya BalooGUEST
8:04
Because it absolutely was not for PR or marketing.
Eric SironHOST
48:40
And we're on the verge of trying to select an automated system.
Eric SironHOST
48:44
But in the interim, I spend a lot of time with OpenSSL, popping out CSRs and, you know, matching them into PFXs and all the things.
Eric SironHOST
48:52
So you can do everything you need to with OpenSSL tool with a certificate.
Eric SironHOST
48:58
So I do a lot of that.
Eric SironHOST
49:00
Then, because this is, most of it involves securing sites, Then I use Qualys SSL Labs, which is a free website you go to.
Eric SironHOST
49:49
which is nice for on-premises stuff because there's things that are behind, you know, internal sites behind a firewall, is TestSSL, which you can get on GitHub.
Eric SironHOST
49:59
And then you pull that down, it runs a little shell script.
Eric SironHOST
50:02
And again, this is kind of like OpenSSL in that it runs best in Linux.
Michael HowardGUEST
57:20
Then above that, you've got, um, say TLS one dot three with hybrid, right? Is you open those floodgates 'cause now people can use that stack.
Michael HowardGUEST
57:28
So basically on Windows, it's to use the new S Channel stack, and in the case of Linux, you use OpenSSL three point five, um, which has ML-KEM built into it.
Michael HowardGUEST
57:36
So you've got those two options are now available to you.
Michael HowardGUEST
57:38
Um, so that's, that's the data in transit taken care of.

17 more episodes mention OpenSSL.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.