A newly disclosed vulnerability called HollowByte allows unauthenticated attackers to cripple OpenSSL servers using a payload of just 11 bytes. The flaw exists because vulnerable versions of OpenSSL allocate memory based on a declared message size in the TLS handshake header before actually receiving or validating the payload data. An