10 Steps to Detect, Prevent, and Remediate the Terrapin Vulnerability
ID: 4ab4266c-90ef-587e-b49e-ebdef7d10d23
STIX ID: report--4ab4266c-90ef-587e-b49e-ebdef7d10d23
Feed Name: Dark Reading
This report outlines the Terrapin vulnerability (CVE-2023-48795) in the SSH protocol/OpenSSH that enables an adversary-in-the-middle to manipulate the SSH handshake and downgrade or disable signature algorithms for affected configurations (notably OpenSSH 9.5 and earlier), and presents detection procedures (cipher and version checks, scanners), prevention best practices (disable weak ciphers, enforce public-key auth, monitoring), and remediation steps (update to OpenSSH 9.6p1, adjust sshd/ssh configs, restart services).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
