Crypto-View

apache/httpcomponents-client

ffe4a05f4faf (19 hours ago) → be07c7729757 (5 hours ago)

Measure Before After Change
Readiness score 22 6 -16
Findings to address 58 73 +15
Key establishment 2 5 +3
Files scanned 815 1211 +396

Added

Present in the later scan and not in the earlier one.

Finding Assessment Before After
SHA-1 Hash algorithm through the JCA · java.messagedigest Already broken 0 2
3DES TLS cipher suite named in source · config.cipher-suite Already broken 0 1
RC4 TLS cipher suite named in source · config.cipher-suite Already broken 0 1
RSAES-PKCS1v15 TLS cipher suite named in source · config.cipher-suite Already broken 0 1
ECDH TLS cipher suite named in source · config.cipher-suite Quantum-vulnerable 0 2
PBKDF2 Password hashing or key derivation · java.kdf Reduced margin 0 2
PBKDF2 Key material constructed for a named algorithm · java.keyspec Reduced margin 0 2
SHA-256 Classical public-key cipher through the JCA · java.cipher Reduced margin 0 2
NULL TLS cipher suite named in source · config.cipher-suite Could not be determined 0 1
HMAC Key material constructed for a named algorithm · java.keyspec Quantum-safe 0 2
HMAC Message authentication code through the JCA · java.mac Quantum-safe 0 2

Count changed

The same finding, in a different number of places.

Finding Assessment Before After
NTLM NTLM authentication · java.ntlm Already broken 10 9
SHA-256 Hash algorithm through the JCA · java.messagedigest Reduced margin 3 9
CSPRNG Random number generation · java.rng Quantum-safe 4 7

Unchanged

13 findings appear in both scans, in the same number of places. Each scan's own report lists them.