We earn commission when you buy through affiliate links.

This does not influence our reviews or recommendations.Learn more.

The Logjam vulnerability helps attacker (man-in-the-middle) to downgrade TLS connections to 512-bit export-grade cryptography.

logjam-stats

This helps an attacker to read and modify any data transmitted over the web connection connection.

This reminds me ofFREAK attack.

Logjam vulnerability can be on any protocols like HTTPS, SSH, IPSec, SMTP that leverage on TLS.

logjam-client-test

As of 24thMay, there are8.4% of the top 1 million domainsare affected by Logjam vulnerability.

Alternatively, you’ve got the option to also try thisone.

KeyCDN another tool to test if the site is vulnerable to Logjam.

Apache HTTP Server

Disable export cipher by adding the following in the SSL configuration file.

Restart Apache, and thats all.

Whats next?

If you are looking for continuous security protection for your online business then you may consider usingcloud-based WAF.