Completed
Intro
Class Central Classrooms beta
YouTube videos curated by Class Central.
Classroom Contents
Scalable Scanning and Automatic Classification of TLS Padding Oracle Vulnerabilities
Automatically move to the next video in the Classroom when playback concludes
- 1 Intro
- 2 Transport Layer Security (TLS)
- 3 TLS Cipher Suites
- 4 TLS Encryption (CBC)
- 5 CBC Mode Decryption
- 6 CBC Malleability
- 7 Padding Oracles in TLS
- 8 Insecure Server
- 9 TLS Padding Oracle History
- 10 Lucky13
- 11 ROBOT
- 12 Padding Oracles in the Wild
- 13 Malformed Message Design
- 14 TLS-Crawler
- 15 Non-determinism
- 16 Prescanning Results
- 17 Alexa Top 1 Million Results
- 18 Vulnerability Identification
- 19 Example Fingerprint
- 20 How to visualize this?
- 21 Vulnerability Clustering: Example
- 22 Observability
- 23 Weak, Strong and Poodle Oracles
- 24 Weak Oracles
- 25 OpenSSL (CVE-2019-1559)
- 26 Disclosure Process
- 27 Contributions
- 28 Conclusion