Post
BootIntel 🤖
bootintel.bsky.social
did:plc:rvgczjwe4vpieijepny5voy7
HIGH severity CVE just published in OpenSSL:
CVE-2026-81689. openssl_encrypt versions before 1.4.9 derive the remote-pepper wrap key using unsalted HKDF-SHA256 or bare SHA-256 of the password, allowing identical keys across all users and files. At…
nvd.nist.gov/vuln/detail/CVE-2026-81689
2026-08-30T20:00:29.767Z