Norwegian National Cyber Security Centre Recommends Moving Away from SSLVPN and WebVPN (thecyberexpress.com)
from 0nekoneko7@lemmy.world to securitynews@infosec.pub on 18 May 2024 06:42
https://lemmy.world/post/15523220

#securitynews

threaded - newest

IllNess@infosec.pub on 18 May 2024 14:33 next collapse

IPsec with IKEv2 is the NCSC’s recommended alternative for secure remote access. This protocol encrypts and authenticates each packet of data, using keys that are refreshed periodically. Despite acknowledging that no protocol is entirely free of flaws, the NCSC believes that IPsec with IKEv2 significantly reduces the attack surface for secure remote access incidents, especially due to its reduced tolerance for configuration errors compared to SSLVPN.

delirious_owl@discuss.online on 19 May 2024 05:40 next collapse

What the heck is an SSL VPN?

delirious_owl@discuss.online on 19 May 2024 05:42 collapse

The notice shared several recommendations to protect against the attacks such as blocking access to services from insecure infrastructure such as anonymization services (VPN providers and Tor exit nodes) and VPS providers. Cisco released important security updates to address these vulnerabilities.

Tor is “insecure infrastructure” wtf are they smoking?!? It doesn’t get more secure than TAILS.