TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

How POODLE Happened

162 pointsby dfrankeover 10 years ago

2 comments

spindritfover 10 years ago
If I disable everything except TLS 1.2 in nginx, how much breakage should I expect? Has anyone tried?<p>The latest stable Fx and Chrome, including mobile, will still work, right? What about various web services like rss readers or the google bot?
评论 #8458308 未加载
评论 #8458410 未加载
评论 #8458307 未加载
babyover 10 years ago
Really great explanation, as I asked there I don&#x27;t see how it can be used if we don&#x27;t know how long the padding is.<p>One idea would be to try to change the ciphertext so it would produce a entire padding block (and then it would be easy to test if it is indeed an entire block of padding just be tampering it without modifying the last byte and it would still be accepted).<p>I guess someone here could answer my question?
评论 #8457941 未加载