- cross-posted to:
- general_education@heapoverflow.ml
- cross-posted to:
- general_education@heapoverflow.ml
In symmetric cryptography, the padding oracle attack can be applied to the CBC mode of operation, where the “oracle” (usually a server) leaks data about whether the padding of an encrypted message is correct or not. Such data can allow attackers to decrypt (and sometimes encrypt) messages through the oracle using the oracle’s key, without knowing the encryption key.
It’s a pretty genius way to break cipher-block-chained encryption!
You must log in or register to comment.