Free
CVE Series: OpenSSL Infinite Loop (CVE-2022-0778)
The OpenSSL infinite loop vulnerability (CVE-2022-0778) is a critical flaw impacting systems running OpenSSL versions 1.0.2, 1.1.1 and 3.0. If exploited, this vulnerability allows adversaries to perform a denial-of-service (DOS) attack. Take our course to exploit this vulnerability in a secure lab environment.
1
H
15
M
Time
intermediate
difficulty
2
ceu/cpe
Course Content
Mitigating the OpenSSL Infinite Loop Vulnerability
Mitigating the OpenSSL Infinite Loop Vulnerability
Identifying the OpenSSL Infinite Loop Vulnerability
Exploiting the OpenSSL Infinite Loop Vulnerability
Exploiting the OpenSSL Infinite Loop Vulnerability
Exploiting the OpenSSL Infinite Loop Vulnerability
Course Description
Who should take this course?
This course is for seasoned red teamers, penetration testers, security and vulnerability assessment analysts, and system administrators who want to know how to exploit and protect against the latest vulnerabilities impacting enterprise systems.Why take this course?
OpenSSL is a cryptographic software library used by most HTTPS websites to ensure secure communications using open-source SSL and TLS protocols. Offering a useful toolkit and communication protections since 1998, OpenSSL is available on Microsoft Windows and Unix-like operating systems. But OpenSSL is not without flaws, for on March 15, 2022, a vulnerability was disclosed that permits an infinite loop. Remote attackers could exploit this vulnerability to perform a denial-of-service (DOS) attack and prevent users from accessing their systems and services. With a high CVE score of 7.5, this flaw can severely impact a target system.What makes this course different from other courses on similar topics?
After completing this course, you will be able to:This course is taught by Raymond Evans, a member of the CyDefe team. CyDefe develops and operates capture-the-flag (CTF) style environments, and this course focuses on presenting learners with virtual labs where you can dirctly apply what you've learned.