<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Understanding Padding Oracle attacks</title>
	<atom:link href="http://www.limited-entropy.com/padding-oracle-attacks/feed" rel="self" type="application/rss+xml" />
	<link>http://www.limited-entropy.com/padding-oracle-attacks</link>
	<description>Not so random thoughts on security featured by Eloi Sanfèlix</description>
	<lastBuildDate>Fri, 27 Jan 2012 03:06:42 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
	<item>
		<title>By: &#187; A besta assusta, mas nem tudo está perdido</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-82499</link>
		<dc:creator>&#187; A besta assusta, mas nem tudo está perdido</dc:creator>
		<pubDate>Fri, 27 Jan 2012 03:06:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-82499</guid>
		<description>[...] dos pesquisadores, mas assim como a outra pesquisa apresentada pela mesma dupla no ano passado: Padding Oracle Attack, gerou muita confusão e FUD na mídia. A do ano passado gerou pânico nos desavisados que achavam [...]</description>
		<content:encoded><![CDATA[<p>[...] dos pesquisadores, mas assim como a outra pesquisa apresentada pela mesma dupla no ano passado: Padding Oracle Attack, gerou muita confusão e FUD na mídia. A do ano passado gerou pânico nos desavisados que achavam [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Davy</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-78798</link>
		<dc:creator>Davy</dc:creator>
		<pubDate>Mon, 09 Jan 2012 05:50:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-78798</guid>
		<description>Hi. 1.Do you implement the padding oracle attacks on ISO CBC mode?
     2.What do you think about  padding oracle attacks on CBC mode encryption with secret and random IV?</description>
		<content:encoded><![CDATA[<p>Hi. 1.Do you implement the padding oracle attacks on ISO CBC mode?<br />
     2.What do you think about  padding oracle attacks on CBC mode encryption with secret and random IV?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 2010???????????Padding Oracle Attack????????? &#124; Simon Zone</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-77428</link>
		<dc:creator>2010???????????Padding Oracle Attack????????? &#124; Simon Zone</dc:creator>
		<pubDate>Mon, 02 Jan 2012 02:07:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-77428</guid>
		<description>[...] Understanding Padding Oracle attacks [...]</description>
		<content:encoded><![CDATA[<p>[...] Understanding Padding Oracle attacks [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mauricio Gaueca F.</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-49896</link>
		<dc:creator>Mauricio Gaueca F.</dc:creator>
		<pubDate>Wed, 21 Sep 2011 21:25:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-49896</guid>
		<description>Hello,

The AES EAX mode solve this problem? For example, generating a random iv and send it as a authenticate data ? 

Regards !</description>
		<content:encoded><![CDATA[<p>Hello,</p>
<p>The AES EAX mode solve this problem? For example, generating a random iv and send it as a authenticate data ? </p>
<p>Regards !</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Insomni’hack 2011 &#124; Linux-backtrack.com</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-18164</link>
		<dc:creator>Insomni’hack 2011 &#124; Linux-backtrack.com</dc:creator>
		<pubDate>Thu, 10 Mar 2011 08:33:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-18164</guid>
		<description>[...] week-end pour récupérer le papier exposant l&#8217;algorithme d&#8217;attaque (également repris ici), mon défi est alors de résoudre l&#8217;épreuve avant d&#8217;arriver Gare de Lyon (et que la [...]</description>
		<content:encoded><![CDATA[<p>[...] week-end pour récupérer le papier exposant l&#8217;algorithme d&#8217;attaque (également repris ici), mon défi est alors de résoudre l&#8217;épreuve avant d&#8217;arriver Gare de Lyon (et que la [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Insomni&#8217;hack 2011 &#124; Segmentation fault</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-18124</link>
		<dc:creator>Insomni&#8217;hack 2011 &#124; Segmentation fault</dc:creator>
		<pubDate>Mon, 07 Mar 2011 23:39:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-18124</guid>
		<description>[...] week-end pour récupérer le papier exposant l&#8217;algorithme d&#8217;attaque (également repris ici), mon défi est alors de résoudre l&#8217;épreuve avant d&#8217;arriver Gare de Lyon (et que la [...]</description>
		<content:encoded><![CDATA[<p>[...] week-end pour récupérer le papier exposant l&#8217;algorithme d&#8217;attaque (également repris ici), mon défi est alors de résoudre l&#8217;épreuve avant d&#8217;arriver Gare de Lyon (et que la [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eloi Sanfèlix</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-18012</link>
		<dc:creator>Eloi Sanfèlix</dc:creator>
		<pubDate>Wed, 02 Mar 2011 08:56:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-18012</guid>
		<description>What do you mean? One of the 256 guesses will give you a successful padding. It might be the first one, or the last one, or any of the intermediates.

If you have all the previous n bytes, then you know what the value is and how to create them so that the padding length is n+1. Then you start modifying the next byte and give it all possible values until you find a correct padding. Then you know the byte, change all the n+1 bytes to prepare for the n+2 guess, and iterate to the next one.

Anyway, I&#039;m not sure if I get your question... maybe you can explain yourself a little bit :)</description>
		<content:encoded><![CDATA[<p>What do you mean? One of the 256 guesses will give you a successful padding. It might be the first one, or the last one, or any of the intermediates.</p>
<p>If you have all the previous n bytes, then you know what the value is and how to create them so that the padding length is n+1. Then you start modifying the next byte and give it all possible values until you find a correct padding. Then you know the byte, change all the n+1 bytes to prepare for the n+2 guess, and iterate to the next one.</p>
<p>Anyway, I&#8217;m not sure if I get your question&#8230; maybe you can explain yourself a little bit <img src='http://www.limited-entropy.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Melsk</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-18009</link>
		<dc:creator>Melsk</dc:creator>
		<pubDate>Wed, 02 Mar 2011 05:18:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-18009</guid>
		<description>What do you do when an intermediate byte doesn&#039;t give you a successful padding?</description>
		<content:encoded><![CDATA[<p>What do you do when an intermediate byte doesn&#8217;t give you a successful padding?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wow! Uncle Joey &#187; Blog Archive &#187; 2010???????????Padding Oracle Attack</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16777</link>
		<dc:creator>Wow! Uncle Joey &#187; Blog Archive &#187; 2010???????????Padding Oracle Attack</dc:creator>
		<pubDate>Wed, 29 Dec 2010 14:59:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16777</guid>
		<description>[...] Understanding Padding Oracle attacks [...]</description>
		<content:encoded><![CDATA[<p>[...] Understanding Padding Oracle attacks [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JJ</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16055</link>
		<dc:creator>JJ</dc:creator>
		<pubDate>Mon, 11 Oct 2010 01:58:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16055</guid>
		<description>Eloi,
Thank you for the reply!

In other words, if I captured an encrypted cookie from some random website and then tried to run a padded oracle attack against that encrypted cookie via a server running a vulnerable version of ASP.NET, it should NOT work because the cookie was encrypted using some other encryption key from some other site? Correct?

JJ</description>
		<content:encoded><![CDATA[<p>Eloi,<br />
Thank you for the reply!</p>
<p>In other words, if I captured an encrypted cookie from some random website and then tried to run a padded oracle attack against that encrypted cookie via a server running a vulnerable version of ASP.NET, it should NOT work because the cookie was encrypted using some other encryption key from some other site? Correct?</p>
<p>JJ</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eloi Sanfèlix</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16046</link>
		<dc:creator>Eloi Sanfèlix</dc:creator>
		<pubDate>Sat, 09 Oct 2010 08:42:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16046</guid>
		<description>@JJ If you refer to the code itself, you&#039;d need to adapt it. 

If you refer to the attack, then the answer is yes provided you find a padding oracle using under the same key the cookie is encrypted with. 

The oracle can be in the cookie decoding routine or anywhere else in the web app, but it has to be under the same key.</description>
		<content:encoded><![CDATA[<p>@JJ If you refer to the code itself, you&#8217;d need to adapt it. </p>
<p>If you refer to the attack, then the answer is yes provided you find a padding oracle using under the same key the cookie is encrypted with. </p>
<p>The oracle can be in the cookie decoding routine or anywhere else in the web app, but it has to be under the same key.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JJ</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16045</link>
		<dc:creator>JJ</dc:creator>
		<pubDate>Fri, 08 Oct 2010 22:29:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16045</guid>
		<description>Can this be used to crack cookies?</description>
		<content:encoded><![CDATA[<p>Can this be used to crack cookies?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: On Padding Oracles, CBC-R and timing attacks&#8230; &#171; Limited Entropy Dot Com</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16008</link>
		<dc:creator>On Padding Oracles, CBC-R and timing attacks&#8230; &#171; Limited Entropy Dot Com</dc:creator>
		<pubDate>Mon, 04 Oct 2010 20:37:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16008</guid>
		<description>[...] so if you remember from last post, we have a way to decrypt messages making use of a padding oracle. So, by providing specially [...]</description>
		<content:encoded><![CDATA[<p>[...] so if you remember from last post, we have a way to decrypt messages making use of a padding oracle. So, by providing specially [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eloi Sanfèlix</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-16007</link>
		<dc:creator>Eloi Sanfèlix</dc:creator>
		<pubDate>Mon, 04 Oct 2010 18:31:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-16007</guid>
		<description>Hi all.

Thanks for the comments :)

@james , the Crypto.Cipher module comes from the pycrypto module. You can find it here: http://www.dlitz.net/software/pycrypto/ .

Cheers,
Eloi</description>
		<content:encoded><![CDATA[<p>Hi all.</p>
<p>Thanks for the comments <img src='http://www.limited-entropy.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>@james , the Crypto.Cipher module comes from the pycrypto module. You can find it here: <a href="http://www.dlitz.net/software/pycrypto/" rel="nofollow">http://www.dlitz.net/software/pycrypto/</a> .</p>
<p>Cheers,<br />
Eloi</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ASP.NET Padding Oracle Attack &#8211; flyingpenguin</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15955</link>
		<dc:creator>ASP.NET Padding Oracle Attack &#8211; flyingpenguin</dc:creator>
		<pubDate>Tue, 28 Sep 2010 21:12:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15955</guid>
		<description>[...] Introduction to Padding Oracle Attack, including Python code [...]</description>
		<content:encoded><![CDATA[<p>[...] Introduction to Padding Oracle Attack, including Python code [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vulnerabilità delle applicazioni ASP.NET &#124; Siamo geek</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15946</link>
		<dc:creator>Vulnerabilità delle applicazioni ASP.NET &#124; Siamo geek</dc:creator>
		<pubDate>Mon, 27 Sep 2010 14:43:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15946</guid>
		<description>[...] ASP.NET si basa sul un problema dell&#8217;implementazione dell&#8217;algoritmo crittografico del padding oracle (in crittografia un oracle è un&#8217;entità algoritmica che risponde in un determinato modo a [...]</description>
		<content:encoded><![CDATA[<p>[...] ASP.NET si basa sul un problema dell&#8217;implementazione dell&#8217;algoritmo crittografico del padding oracle (in crittografia un oracle è un&#8217;entità algoritmica che risponde in un determinato modo a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kakrat</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15925</link>
		<dc:creator>kakrat</dc:creator>
		<pubDate>Sat, 25 Sep 2010 09:18:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15925</guid>
		<description>Thanks,  I finally understand it. It&#039;s pretty twisted.</description>
		<content:encoded><![CDATA[<p>Thanks,  I finally understand it. It&#8217;s pretty twisted.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: james</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15917</link>
		<dc:creator>james</dc:creator>
		<pubDate>Fri, 24 Sep 2010 12:27:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15917</guid>
		<description>i can not find any crypto.chipher in default python installation. is there any additional package ? if it is please suggest me some links.</description>
		<content:encoded><![CDATA[<p>i can not find any crypto.chipher in default python installation. is there any additional package ? if it is please suggest me some links.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joe</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15914</link>
		<dc:creator>Joe</dc:creator>
		<pubDate>Fri, 24 Sep 2010 09:08:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15914</guid>
		<description>Thanks for this! Please continue writing quality posts. Personally, I&#039;m not an encryption guru, so posts explaining basic concepts and newbie material would be greatly appreciated :-)</description>
		<content:encoded><![CDATA[<p>Thanks for this! Please continue writing quality posts. Personally, I&#8217;m not an encryption guru, so posts explaining basic concepts and newbie material would be greatly appreciated <img src='http://www.limited-entropy.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ASP Bite Danger &#124; Complete Source</title>
		<link>http://www.limited-entropy.com/padding-oracle-attacks/comment-page-1#comment-15898</link>
		<dc:creator>ASP Bite Danger &#124; Complete Source</dc:creator>
		<pubDate>Wed, 22 Sep 2010 23:49:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.limited-entropy.com/?p=671#comment-15898</guid>
		<description>[...] to store information during user sessions. This is related to something the crypto pros call “padding oracle,” which has nothing to do with Oracle the [...]</description>
		<content:encoded><![CDATA[<p>[...] to store information during user sessions. This is related to something the crypto pros call “padding oracle,” which has nothing to do with Oracle the [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

