Timeline to remove DSA support in OpenSSH

2024 The open source SSH client most identical to OpenSSH (written in Go)

OpenSSH 9.5

OpenSSH 9.5 released with keystroke timing obfuscation

OpenSSH 9.4p1 Release Notes

Remote code execution in OpenSSH’s forwarded SSH-agent

OpenSSH has some peculiar handling around command line arguments

CVE-2023-38408: Remote Code Execution in OpenSSH's forwarded SSH-agent

OpenSSH versus SSH

[code review]: simple Tauri app to upload files using openssh SFTP

OpenSSH 9.3/9.3p1

OpenSSH Privilege Separation and Sandbox - Attack Surface Analysis

OpenSSH Pre-Auth Double Free – Writeup and Proof-of-Concept

OpenSSH: 9.2 Release Notes

double-free vulnerability in OpenSSH server 9.1 (CVE-2023-25136)

OpenSSH client side key management for better privacy and security

openssh-sftp-client has released!

openssh-sftp-client 0.11.0-rc.1 is released!

OpenSSH now uses hybrid post-quantum streamlined NTRU Prime X25519 by default

OpenSSH goes Post-Quantum, switches to qubit-busting crypto by default

OpenSSH 8.9

OpenSSH 9.0

SSH Agent Restriction (new in OpenSSH 8.9)

OpenSSH updated to 8.7p1 in FreeBSD base

RSA/SHA1 signature type disabled by default in OpenSSH

OpenSSH ssh-agent Shielded Private Key Extraction (x86_64 Linux)

OpenSSH switches to using gender-neutral language

Public key cryptography: OpenSSH private keys

OpenSSH 8.6 is still vulnerable to CVE-2020-14145 and will not be fixed

OpenSSH 8.2 Just Works with U2F/FIDO2 Security Keys (2020)

More →