UNKNOWN Go
Invoking Encrypted Client Hello privacy leak in crypto/tls
GO-2026-5856 · CVE-2026-42505
Published · Modified
Description
Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of pre-shared key identities in the unencrypted client hello.
References
Ready to move
Start Securing
Free, no credit card | First findings in minutes