BugTraq
Re: OpenSSH/PAM timing attack allows remote users identification May 01 2003 11:59PM
ilja van sprundel (ilja netric org)
In-Reply-To: <Pine.LNX.4.30L2.0304301358220.9889-200000 (at) dns.mediaservice (dot) net [email concealed]>

hm, this has been known for some time,

and stealth of teso wrote a nice paper and some

example tools for stuff like that :

http://www.team-teso.net/releases/epta.tgz

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus