The DROWN Attack (33c3)
- Title:
- The DROWN Attack (33c3)
- Description:
-
more » « less
Breaking TLS using SSLv2
We present DROWN, a novel cross-protocol attack on TLS that uses a server supporting SSLv2 as an oracle to decrypt modern TLS connections. Using Internet-wide scans, we find that 33% of all HTTPS servers are vulnerable to this protocol-level attack.
['Sebastian Schinzel']
- Video Language:
- English
- Duration:
- 55:36
![]() |
Bar Sch edited English subtitles for The DROWN Attack (33c3) | |
![]() |
C3Subtitles added new URL for The DROWN Attack (33c3) | |
![]() |
C3Subtitles added new URL for The DROWN Attack (33c3) | |
![]() |
C3Subtitles added a video: The DROWN Attack (33c3) |