Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

From my very not-a-crypto-person perspective, I had thought compression was fine as long as you don't pad it to the expected block length before encrypting?

something something padding oracle



The paper linked in the article: "Phonotactic Reconstruction of Encrypted VoIP Conversations"[1] specifically works in a situation without padding because the compression scheme affects the length of packets in a semantic way.

[1] http://www.cs.unc.edu/~fabian/papers/foniks-oak11.pdf




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: