International Business Machines Corporation
Transport layer security session man-in-the-middle attack prevention

Last updated:

Abstract:

Preventing Transport Layer Security session man-in-the-middle attacks is provided. A first security digest generated by an endpoint device is compared with a second security digest received from a peer device. It is determined whether a match exists between the first security digest and the second security digest based on the comparison. In response to determining that a match does not exist between the first security digest and the second security digest, a man-in-the-middle attack is detected and a network connection for a Transport Layer Security session is terminated with the peer device.

Status:
Grant
Type:

Utility

Filling date:

9 Nov 2018

Issue date:

5 Jul 2022