Blog
VERT Threat Alert: Return of Bleichenbacher’s Oracle Threat (ROBOT)
By Craig Young on Tue, 12/12/2017
Vulnerability Description
A team of researchers, including Tripwire VERT’s Craig Young has announced that TLS stacks from at least 8 different vendors are vulnerable to a well-known 19-year-old protocol flaw. The problem is that these implementations allow an attacker to identify whether or not a chosen ciphertext has proper PKCS#1 v1.5 padding...