Hacker News new | ask | show | jobs
by jgrahamc 3742 days ago
Waiting for the paper on this:

    Impact: An attacker who is able to bypass Apple's certificate pinning, 
    intercept TLS connections, inject messages, and record encrypted attachment-
    type messages may be able to read attachments

    Description: A cryptographic issue was addressed by rejecting duplicate 
    messages on the client.

    CVE-2016-1788 : Christina Garman, Matthew Green, Gabriel Kaptchuk, Ian Miers, 
    and Michael Rushanan of Johns Hopkins University
1 comments

The blog post (which includes link to the paper) has been submitted here: https://news.ycombinator.com/item?id=11332377