Padding-Oracle Attack

Cryptographic oracle leak-ва дали padding/decryption result е валиден, което позволява iterative inference за ciphertext/plaintext.

Какво е

Cryptographic oracle leak-ва дали padding/decryption result е валиден, което позволява iterative inference за ciphertext/plaintext.

Как работи

Различен error/timing response за malformed ciphertext дава един bit-like signal при много queries.

Как да се предотврати

Authenticated encryption (AEAD), modern protocols/libraries, uniform failure behavior, no legacy vulnerable modes и rate limiting като вторична защита.

Други в Криптографски, hardware и side-channel атаки