Investigadores encuentran agujero en la encriptación web [ENG]

  1. #5   #3 Como bien apunta #4, si lees el articulo que apunto en #1:
    "Instead, BEAST carries out what's known as a plaintext-recovery attack that exploits a vulnerability in TLS that has long been regarded as mainly a theoretical weakness. During the encryption process, the protocol scrambles block after block of data using the previous encrypted block. It has long been theorized that attackers can manipulate the process to make educated guesses about the contents of the plaintext blocks.
    If the attacker's guess is correct, the block cipher will receive the same input for a new block as for an old block, producing an identical ciphertext.
    20  votos: 1   link
    el 20-09-2011 12:49 UTC por cubaman cubaman
     twitter  facebook  tuenti  
comentarios cerrados

menéame