Scalable Scanning and Automatic Classification of TLS Padding Oracle Vulnerabilities

Scalable Scanning and Automatic Classification of TLS Padding Oracle Vulnerabilities

TheIACR via YouTube Direct link

Intro

1 of 28

1 of 28

Intro

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Scalable Scanning and Automatic Classification of TLS Padding Oracle Vulnerabilities

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 Transport Layer Security (TLS)
  3. 3 TLS Cipher Suites
  4. 4 TLS Encryption (CBC)
  5. 5 CBC Mode Decryption
  6. 6 CBC Malleability
  7. 7 Padding Oracles in TLS
  8. 8 Insecure Server
  9. 9 TLS Padding Oracle History
  10. 10 Lucky13
  11. 11 ROBOT
  12. 12 Padding Oracles in the Wild
  13. 13 Malformed Message Design
  14. 14 TLS-Crawler
  15. 15 Non-determinism
  16. 16 Prescanning Results
  17. 17 Alexa Top 1 Million Results
  18. 18 Vulnerability Identification
  19. 19 Example Fingerprint
  20. 20 How to visualize this?
  21. 21 Vulnerability Clustering: Example
  22. 22 Observability
  23. 23 Weak, Strong and Poodle Oracles
  24. 24 Weak Oracles
  25. 25 OpenSSL (CVE-2019-1559)
  26. 26 Disclosure Process
  27. 27 Contributions
  28. 28 Conclusion

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.