Full Disclosure mailing list archives

Re: Thomas Ptacek and Wikipedia


From: coderman <coderman () gmail com>
Date: Sat, 15 Dec 2007 23:29:07 -0800

On Dec 15, 2007 2:51 PM, coderman <coderman () gmail com> wrote:
... "I don't think this is a timing attack; it's a side-channel
attack that exploits the fact that OpenSSL's impact on the branch
prediction cache leaks information."

someone says to me, "Branch Prediction Analysis side channel attacks
are not traditional timing attacks".

sure, not _traditional_ timing attack.  active interference for
targeted misses gives much more key than traditional passive timing.

but this is still a timing attack, even if one much more effective
than most.  someone is now informed.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: