Padding-Oracle Attack
Cryptographic oracle leak-ва дали padding/decryption result е валиден, което позволява iterative inference за ciphertext/plaintext.
Какво е
Cryptographic oracle leak-ва дали padding/decryption result е валиден, което позволява iterative inference за ciphertext/plaintext.
Как работи
Различен error/timing response за malformed ciphertext дава един bit-like signal при много queries.
Как да се предотврати
Authenticated encryption (AEAD), modern protocols/libraries, uniform failure behavior, no legacy vulnerable modes и rate limiting като вторична защита.