Identifying and Exploiting Cryptographic Padding Oracles

  • Friday, March 2, 2012 | 11:20 AM – 12:10 PM | Room: Room 302

View all Sessions

This presentation will discuss how to identify and exploit cryptographic padding oracle vulnerabilities in custom web applications. Through a series of live demonstrations, the presentation will cover common scenarios related to padding oracle detection and show how to use the free open source PadBuster tool to both identify and exploit each scenario.


This document was retrieved from on Mon, 30 May 2016 02:55:29 -0400.
© 2016 EMC Corporation. All rights reserved.