IT experts warn of loophole in email encryption systems

Source: Xinhua| 2018-05-15 03:28:25|Editor: Mu Xuequan
Video PlayerClose

BERLIN, May 14 (Xinhua) -- IT experts in Germany and Belgium have identified a dangerous security flaw in email encryption services, Sebastian Schnitzler, professor for computer safety at the Muenster Technical College, warned on Monday.

Writing on Twitter, Schnitzler drew attention to "critical weaknesses" in PGP/GPG and S/MIME email encryption services which threaten the security of personal information from hackers. Schnitzler said he and other researchers at the Ruhr University Bochum and KU Leuven (the Catholic University of Leuven) had discovered two pathways through which hackers could access the original text of encrypted emails.

The academics recommended to government authorities and companies to refrain from using the affected encryption services until updates were released which closed the loophole. Warnings of the security flaw have been widely-publicized in German media reports being called an "#Efail".

Reacting to the news on Monday, the German Federal Office for Information Security (BSI) highlighted, however, that "#Efail" only posed a threat to users of email encryption services under certain circumstances. In order to succeed, hackers needed to have prior access to the transport route, mail server or email post-box.

Additionally, the flaw is limited to cases where recipients have activated settings enabling the execution of HTML code and the re-loading of external content. As a consequence, PGP/GPG and S/MIME encryption services could still be used without concern as long as they were "correctly implemented" and "configured safely."

TOP STORIES
EDITOR’S CHOICE
MOST VIEWED
EXPLORE XINHUANET
010020070750000000000000011105091371789401
国产无码在线观看免费在线,37pao国产成视频,日韩一区二区视频在线,国产国产人免费人成免费视频麻豆
亚洲国产精品午夜不卡网站 | 一本色道久久综合亚洲精品高清 | 日韩精品亚洲伊人久久 | 亚洲日韩欧美国产精品共 | 在线中文字幕亚洲日韩不卡 | 天天亚洲欧美日韩久久 |