Menu

Post image 1
Post image 2
Post image 3
Post image 4
Post image 5
1 / 5
0

Bots Tampering with TLS to Avoid Detection

Reading 0:00
15s threshold

Researchers at Akamai observed attackers using a novel approach for evading detection. This new technique - which we call Cipher Stunting - has become a growing threat, with its roots tracing back to early-2018. By using advanced methods, attackers are randomizing SSL/TLS signatures in an attempt to evade detection attempts. \r\n Attackers have continued to change the way they operate, adding complexity and sophistication to their evasion techniques as they target businesses like airlines, banking, and dating websites. Over the last few months, attackers have been tampering with SSL/TLS signatures at a scale never before seen by Akamai. \r\n The TLS fingerprints that Akamai observed before Cipher Stunting was observed could be counted in the tens of thousands. Soon after the initial observation, that count ballooned to millions, and then recently jumped to billions.…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More