you probably heard about the most recent SSL (V3.0) exploit, POODLE. it’s been all over the news. but it was only a few days ago that I found a very good and prolific explanation on how POODLE happened and how it could stay as unnoticed for so many years. usually i write my own posts, but this time i let a very good blog/explanation speak for itself.

Bottom line: disable SSL V3.0 and force TLS.

check this out: How POODLE happened

alt text