Talk at Blackhat USA 2016 accepted
Aaron Zauner, one of our researchers, has gotten a talk accepted at Blackhat USA 2016. Together with Sean Devlin, Hanno Böck and Philipp Jovanovic they identified a nonce re-use attack in the TLS GCM modes that can be used to inject additional content in the worst case. Overall, they identified more than 70,000 vulnerable websites on the Internet. You can read the abstract here.
Update: the corresponding paper is now online, you can find it here.
News coverage: ARS Technica