HollowByte: 11 bytes are enough to saturate OpenSSL server memory
The HollowByte flaw in OpenSSL allows an attacker to send an 11-byte TLS request to inflate server memory until saturation. A rarely achieved attack-to-impact ratio, affecting a library present on millions of servers.
Sep 1, 2026 10 2
