spacer
 

Juliano Rizzospacer (Independent researcher)

BEAST: Surprising crypto attack against HTTPS

We present a new fast block-wise chosen-plaintext attack against SSL/TLS. We also describe one application of the attack that allows an adversary to efficiently decrypt and obtain authentication tokens and cookies from HTTPS requests. Our exploit abuses a vulnerability present in the SSL/TLS implementation of major Web browsers at the time of writing.

Sobre Juliano Rizzo

Juliano Rizzo has been involved in computer security since 1996. For more than a decade he has been working on vulnerability research, reverse engineering and development of high quality exploits. As a researcher he has published various security advisories, papers and proof of concept tools. He is one of the founders and designers of Netifera, an open source platform for network security tools. He worked as a security consultant and exploit developer for Core Security Technologies (2000-2006).

« volver a Speakers

NOVEDADES


  • Ultimas vacantes en Trainings!

    A solo días de la edición 2011 de la ekoparty, varios trainings han sido vendidos completamente, y...


  • #1HackParaLosChicos - Jornada Solidaria

    El próximo 26 de Julio de 2011, tendrá lugar la jornada solidaria #1HackParaLosChicos, enterate co...


  • TRAINING: Finding Bugs

    De la mano de IMMUNITY, empresa líder en el desarrollo de aplicaciones para penetration testing, tr...


  • Slogan Oficial ekoparty 2011: "El bit que desbordó el buffer"

    Tenemos el placer de anunciar, que el Slogan votado por la gente, para representar a la ekoparty 201...


  • TRAINING: Python For Hackers

    De la mano de IMMUNITY, empresa líder en el desarrollo de aplicaciones para penetration testing, tr...


ORGANIZADORES


spacer spacer spacer

diseño: GrafikaWeb

gipoco.com is neither affiliated with the authors of this page nor responsible for its contents. This is a safe-cache copy of the original web site.