出典:Wikipedia
出典:『Wikipedia』 (2011/01/05 22:56 UTC 版)
In cryptography, the padding oracle attack is an attack on the CBC mode of operation, where the "oracle" (usually a server) leaks data about whether the padding of an encrypted message is correct or not. This can allow attackers to decrypt (and sometimes encrypt) messages through the oracle using the oracle's key, without knowing the encryption key.