---
title: ROBOT Attack - Ascertia Unaffected | Ascertia | Blog
description: Ascertia is delighted to share its products are unaffected by the recent vulnerability found in TLS protocol implementation (ROBOT attack). Learn more:
image: https://blog.ascertia.com/hubfs/Robot%20Attack.jpg
---

[![](https://blog.ascertia.com/hubfs/asc-blog-logo-detail.png)](https://blog.ascertia.com/)

##### [View all posts](https://blog.ascertia.com/)

[Contact Us](https://www.ascertia.com/company/contact-us/)

# Ascertia products unaffected by the ROBOT attack

Posted by [Mike Hathaway](https://blog.ascertia.com/author/mike-hathaway) on Jan 2, 2018 1:58:47 PM

![](https://blog.ascertia.com/hubfs/Mike%20Hathaway%20Headshot%202023.png)

Recently a vulnerability in the implementation of TLS protocol has been found called [ROBOT](https://robotattack.org/) (Return Of Bleichenbacher's Oracle Threat).

This is the return of a 19-year-old vulnerability that allows RSA decryption and signing operations with the private key of a TLS server.

![Ascertia Products are not affected by the ROBOT Attack](https://blog.ascertia.com/hs-fs/hubfs/Robot%20Attack.jpg?width=685&name=Robot%20Attack.jpg "Ascertia Products are not affected by the ROBOT Attack")

## What is the ROBOT vulnerability?

Back in 1998, [Daniel Bleichenbacher](https://en.wikipedia.org/wiki/Daniel_Bleichenbacher) found that the error messages given by SSL servers for errors in the PKCS #1 v1.5 padding in cipher suites using RSA key exchange allowed adaptive-chosen ciphertext attacks.

This vulnerability allowed hackers to decrypt encrypted data using the TLS server’s RSA public key as well as the ability to generate a signature using the TLS servers. Research has revealed that by using some slight variations this vulnerability can still be used against many HTTPS hosts in today's Internet.

## Security is Ascertia's top priority

As a responsible vendor in the PKI and digital signature space we understand the importance of keeping our clients and partners informed about our products and services.

Although this issue has caused significant waves in security circles, our products were found to be unaffected by this vulnerability. This includes our multi-function e-Trust Services product [ADSS Server](https://www.ascertia.com/products/adss-signing-server/) and [SigningHub](https://www.signinghub.com/). Consequently, there has been no downtime or patching required by our clients and Trust Service Provider (TSP) partners.

[Visit Ascertia.com](https://www.ascertia.com/)

This is a search field with an auto-suggest feature attached.

 Search

- There are no suggestions because the search field is empty.

### Recent Posts

### Posts by Topic

- [News (64)](https://blog.ascertia.com/tag/news)
- [Digital Trust (51)](https://blog.ascertia.com/tag/digital-trust)
- [Esignatures & Digital Signatures (41)](https://blog.ascertia.com/tag/esignatures-digital-signatures)
- [Esignatures, Digital Signatures & Digital Signing (25)](https://blog.ascertia.com/tag/esignatures-digital-signatures-digital-signing)
- [Remote Signing (21)](https://blog.ascertia.com/tag/remote-signing)
- [Ascertia Partners (16)](https://blog.ascertia.com/tag/ascertia-partners)
- [Business Process & Workflow Efficiencies (15)](https://blog.ascertia.com/tag/business-process-workflow-efficiencies)

### Subscribe to Blog

### Download this essential eBook

Choosing the right type of e-signature  
for your business

[![Download your eBook](https://no-cache.hubspot.com/cta/default/2937299/065619c2-b2d6-4c65-9820-92c7e0dceaa8.png)](https://cta-redirect.hubspot.com/cta/redirect/2937299/065619c2-b2d6-4c65-9820-92c7e0dceaa8)

- Signing
- EU eIDAS Compliant Advanced & Qualified Signatures
- [SigningHub](https://www.ascertia.com/products/signinghub/)
- [ADSS Signing Server](https://www.ascertia.com/products/adss-signing-server/)

- PKI
- Modular solution for your Trust Service needs
- [ADSS Certificate Authority](https://www.ascertia.com/products/adss-ca-pki-server/)
- [ADSS Registration Authority](https://www.ascertia.com/products/adss-ra-server/)
- [ADSS Validation Authority](https://www.ascertia.com/products/adss-ocsp-server/)
- [ADSS Time Stamp Authority](https://www.ascertia.com/products/adss-tsa-server/)
- [ADSS Archive Authority](https://www.ascertia.com/products/adss-ltans-evidence-server/)

- Tools
- Integrate, test & monitor your Trust Services
- [ADSS Auto File Processor](https://www.ascertia.com/products/adss-auto-file-processor/)
- [ADSS Client SDK](https://www.ascertia.com/products/adss-client-sdk/)

- Solutions
- [Mobile Signatures](https://www.ascertia.com/solutions-by-technology/mobile-signing/)
- [Remote (Cloud) Signing](https://www.ascertia.com/solutions-by-technology/remote-signing/)
- <https://www.linkedin.com/company/ascertia> <https://www.youtube.com/user/ESIGNwithAscertia>

[Terms of Use](https://www.ascertia.com/terms-of-use/)   |   [Privacy Policy](https://www.ascertia.com/company/privacy-policy/)   |   © Ascertia. All rights reserved. ISO 9001:2015 Certified