Website Security & Threat Management
No upgrade needed: CloudFlare sites already protected from FREAK

No upgrade needed: CloudFlare sites already protected from FREAK

3/4/2015 · John Graham-Cumming

What this post added

This post highlights Cloudflare's proactive security measures against the FREAK vulnerability by not supporting weak 'export grade' cryptography and maintaining updated OpenSSL versions. It reinforces their ongoing commitment to disabling outdated protocols and ciphers (like SSLv3 and RC4) and adopting modern, secure ones (like ChaCha-Poly, forward secrecy, and elliptic curves).

Read the original post ↗