NSA urges system administrators to replace obsolete TLS protocols
Summary
The US National Security Agency has issued a security advisory [PDF] this month urging system administrators in federal agencies and beyond to stop using old and obsolete TLS protocols. "Using obsolete encryption provides a false sense of security because it seems as though sensitive data is protected, even though it really is not," the agency added. The US cybersecurity agency has published a list of tools on its GitHub profile to help system administrators with the task of identifying systems on their internal networks still using obsolete TLS protocol configurations. The NSA advisory, published on January 5, was echoed yesterday by the agencys counterpart in the Netherlands, the Dutch National Cyber Security Center. In its advisory, the NSA warned that new attacks against TLS protocols are always being discovered and that organizations should use the latest TLS protocol versions to "always stay ahead of malicious actors abilities and protect important information."