å§ç¸®ããã HTTPS ã¬ã¹ãã³ã¹ã®é·ãã観測ãããã¨ã§ãæ»æè 㯠HTTPS ã¹ããªã¼ã ã®æå·æãããã¦ã§ããµã¤ãã®èªè¨¼éµãªã© (secret) ãæ¨æ¸¬ãããã¨ãå¯è½ã§ãã Salesforce.com ã® Angelo Prado æ°ã¯ãä¸è¨ã®éãå ±åãã¦ãã¾ãã Extending the CRIME vulnerability presented at Ekoparty 2012, an attacker can target HTTPS responses to recover data from the response body. While the CRIME attack is currently believed to be mitigated by disabling TLS/SSL/level compression, compressed HTTP respons
{{#tags}}- {{label}}
{{/tags}}