{"guid":"HLDDEFxCxCrQryx8fEacZw","title":"Revisiting SSL/TLS Implementations","subtitle":"New Bleichenbacher Side Channels and Attacks","slug":"31c3_-_5960_-_en_-_saal_2_-_201412271600_-_revisiting_ssl_tls_implementations_-_sebastian_schinzel","link":"http://events.ccc.de/congress/2014/Fahrplan/events/5960.html","description":"We present four new Bleichenbacher side channels, and three successful Bleichenbacher attacks against the Java Secure Socket Extension (JSSE) SSL/TLS implementation and against hardware security appliances using the Cavium NITROX SSL accelerator chip.","original_language":"eng","persons":["Sebastian Schinzel"],"view_count":2623,"promoted":false,"date":"2014-12-27T16:00:00.000+01:00","release_date":"2014-12-28T01:00:00.000+01:00","updated_at":"2026-04-17T10:45:04.558+02:00","tags":["Security \u0026 Hacking"],"length":3354,"duration":3354,"thumb_url":"https://static.media.ccc.de/media/congress/2014/5960-hd.jpg","poster_url":"https://static.media.ccc.de/media/congress/2014/5960-hd_preview.jpg","timeline_url":"https://static.media.ccc.de/media/congress/2014/HLDDEFxCxCrQryx8fEacZw-timeline.jpg","thumbnails_url":"https://static.media.ccc.de/media/congress/2014/HLDDEFxCxCrQryx8fEacZw-thumbnails.vtt","frontend_link":"https://media.ccc.de/v/31c3_-_5960_-_en_-_saal_2_-_201412271600_-_revisiting_ssl_tls_implementations_-_sebastian_schinzel","url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_title":"31C3: a new dawn","conference_url":"https://api.media.ccc.de/public/conferences/31c3","related":[{"event_id":126,"event_guid":"import-176ad1853fc7e8cdd1","weight":1},{"event_id":728,"event_guid":"import-e7492b8aa05ee34d8c","weight":1},{"event_id":735,"event_guid":"import-8292b0b8200c093615","weight":1},{"event_id":1288,"event_guid":"import-f363beb3e33d37dcf1","weight":1},{"event_id":1372,"event_guid":"import-79c42ca7a3a36179d3","weight":1},{"event_id":1519,"event_guid":"import-7c24eae3ff97e72737","weight":1},{"event_id":1569,"event_guid":"import-f08408f6dd676d9b53","weight":1},{"event_id":1577,"event_guid":"import-a48e3c67373025c5ed","weight":1},{"event_id":1606,"event_guid":"import-dc19512cf9bb9158fd","weight":1},{"event_id":1608,"event_guid":"import-9013654b84fc374d59","weight":1},{"event_id":1631,"event_guid":"import-ee5f21f5e79f77824c","weight":2},{"event_id":1659,"event_guid":"import-fc9f264162a3c61c59","weight":1},{"event_id":1679,"event_guid":"import-48b0cf47c506fc757f","weight":1},{"event_id":1748,"event_guid":"ufJTu-pu8QBUtd-bji9tmw","weight":1},{"event_id":1754,"event_guid":"NzP8F_rnRMmXIbb6zl1H8Q","weight":1},{"event_id":1756,"event_guid":"a-xJCEtToBTndlcjWvCAKQ","weight":1},{"event_id":1785,"event_guid":"GqBcTbWHQclHwDW_kI9yBQ","weight":1},{"event_id":1786,"event_guid":"X5bQYDGyUSq8KPoTcyahdw","weight":2},{"event_id":1796,"event_guid":"z7M48Tb_4vtI0BBFVqe_ag","weight":1},{"event_id":1802,"event_guid":"PPVcroSxtnY9RfXjkEmxGA","weight":1},{"event_id":1814,"event_guid":"3HEv_YYlkY2P_y1pKfU7fA","weight":1},{"event_id":1846,"event_guid":"BAKqlbEKHMpBMr22KlDsEg","weight":1},{"event_id":2013,"event_guid":"_1gVt5y_RrWJMx4P36Virw","weight":1},{"event_id":2156,"event_guid":"-n9QScyDLXMEwkqrCHASYw","weight":1},{"event_id":2158,"event_guid":"n2DFvyl_lWjW-gm317vT3A","weight":1},{"event_id":2161,"event_guid":"oI8n77eKy3Uz2Fklmk4hVQ","weight":1},{"event_id":2164,"event_guid":"XGqu620EKR92-WUWMXNRvA","weight":1},{"event_id":2166,"event_guid":"Km3oA97mSXAMOZGte_v8Fg","weight":1},{"event_id":2172,"event_guid":"ELK9-ZQeFcqKxBYW8eay8g","weight":1},{"event_id":2189,"event_guid":"0T8GTXjwMVJLM_n5VEuE0A","weight":1},{"event_id":2198,"event_guid":"1NE5joYD0o-gaf5SqL-1Nw","weight":1},{"event_id":2204,"event_guid":"78e2d419-0adc-43ff-989e-95a78ac9ddd4","weight":2},{"event_id":2206,"event_guid":"1Xe2U3LqTfMTXAvI6hrgxg","weight":1},{"event_id":2229,"event_guid":"P8L4krxqjXP7zHMZToU6CQ","weight":1},{"event_id":2253,"event_guid":"uMGv2XJJqkQodKm0_Mtr_A","weight":1},{"event_id":2268,"event_guid":"87b8f1ba-1f05-46c2-93ac-b575bbc9fb4f","weight":1},{"event_id":2269,"event_guid":"C4w30id6HpMnzKM2xcrT4g","weight":1},{"event_id":2277,"event_guid":"ad722522-5817-4317-8f3d-bb443b4e6c77","weight":1},{"event_id":2291,"event_guid":"2f68e356-6c3f-4034-9640-c06d717ed96b","weight":1},{"event_id":2300,"event_guid":"mzNAGavKy2KOcwOjGqC8pw","weight":1},{"event_id":2327,"event_guid":"42ec874f-960f-4f71-bf88-40d66a462419","weight":1},{"event_id":2421,"event_guid":"6db799ad-eb93-43ba-ae8d-299976c5254f","weight":1},{"event_id":2538,"event_guid":"a5f996a3-d0a7-44e7-ac1b-6373a297ccf3","weight":1},{"event_id":2827,"event_guid":"f79c744f-30d1-4175-a173-2e760049337d","weight":1},{"event_id":2832,"event_guid":"489a414b-2d6b-4f20-8187-813169ca19c9","weight":1},{"event_id":2837,"event_guid":"9f2e9ff0-1555-470b-8743-9f07f54e9097","weight":1},{"event_id":2850,"event_guid":"4f1a0717-6931-4580-9e49-5d523be045df","weight":1},{"event_id":2890,"event_guid":"b7327513-182a-455a-932e-aab4791f5331","weight":1},{"event_id":2893,"event_guid":"371063d0-da9d-4d9f-bbe9-f5739eba2f30","weight":1},{"event_id":2904,"event_guid":"8b01d636-d39b-44b8-8d6f-fc03e47eae1b","weight":1},{"event_id":2922,"event_guid":"47cbd880-f500-4c44-b717-c11ed1da087d","weight":1},{"event_id":2923,"event_guid":"ba780105-8cc1-4e6e-8552-5e3bc150b9ff","weight":1},{"event_id":2938,"event_guid":"03c8501f-d327-4228-a9fe-2635370d25d2","weight":1},{"event_id":2940,"event_guid":"48219ef6-24b8-41ca-8cc0-ec309e4148e6","weight":1},{"event_id":2955,"event_guid":"c3731bcd-04a8-49ba-a472-d1180944c106","weight":1},{"event_id":2957,"event_guid":"27f4fab0-b7ad-11e5-9877-fb7fcf035cf2","weight":1},{"event_id":3104,"event_guid":"b2bc162c-1745-4f45-ba56-766b4174095b","weight":2},{"event_id":3572,"event_guid":"97eb193e-25c8-5ae8-b83c-a0de3daa31fc","weight":1},{"event_id":3605,"event_guid":"61f9d4c6-a3de-4958-a57c-efcf941668fa","weight":5},{"event_id":3608,"event_guid":"a0c851a1-b44e-46cb-bbb8-db966bc8639b","weight":1},{"event_id":3615,"event_guid":"74783236-46f4-493c-9574-1b27a44847b7","weight":1},{"event_id":3627,"event_guid":"143759c6-2cad-4fc8-a120-86dcc8de97e6","weight":1},{"event_id":3652,"event_guid":"60b52369-b0ee-455f-904a-4dfef49596eb","weight":1},{"event_id":3671,"event_guid":"4ef69e6a-026f-4b30-888d-af654b220a3d","weight":1},{"event_id":3698,"event_guid":"994082de-ef8e-4f8e-8c46-ec0eb110b845","weight":1},{"event_id":3717,"event_guid":"07a731a0-2c3a-40f1-928e-3f709eb1eccf","weight":1},{"event_id":3741,"event_guid":"725b4ff6-8d4c-4d8f-9e38-6b1e49e1602c","weight":2},{"event_id":3762,"event_guid":"25e2df7d-5740-4c2f-bc34-986326d606fe","weight":1},{"event_id":3769,"event_guid":"5e96082f-cea6-41b5-9545-b2bc0b16c377","weight":1},{"event_id":3983,"event_guid":"f21bc737-27f2-5aed-be11-48c52f144f4d","weight":1},{"event_id":4259,"event_guid":"b5a645a9-bbdc-433e-a77c-b416074a92ea","weight":1},{"event_id":4287,"event_guid":"a3d8af27-783d-4974-8118-8f536651201a","weight":1},{"event_id":4323,"event_guid":"df804417-58b7-42fa-a626-83ed1663677f","weight":1},{"event_id":4396,"event_guid":"b5188ef7-b244-48fc-826e-7603cd1d7837","weight":1},{"event_id":4435,"event_guid":"9645858e-a653-4811-9400-5f5e390b0fd7","weight":1},{"event_id":4552,"event_guid":"4a584856-5341-2020-2020-202020202020","weight":1},{"event_id":4574,"event_guid":"dabd059f-a59f-5e73-b9e3-05b426f29aef","weight":1},{"event_id":4633,"event_guid":"ce05c4c7-d157-444d-812e-3c325024ba36","weight":1},{"event_id":4634,"event_guid":"a7628d54-2031-4aab-b44b-7a7aab984807","weight":1},{"event_id":4647,"event_guid":"6e29a1b5-3673-44e0-9519-51e4b553ee02","weight":1},{"event_id":4667,"event_guid":"9b3292f5-f7bd-49f9-8c2b-5dc98d72e6a4","weight":1},{"event_id":4686,"event_guid":"9a0dbcc7-5cb1-4704-a944-5825fb710c59","weight":1},{"event_id":5068,"event_guid":"1c3ff3c0-00f3-5d3b-b141-c8db54bf0b26","weight":1},{"event_id":5243,"event_guid":"41524d50-3344-2020-2020-202020202020","weight":1},{"event_id":5637,"event_guid":"d9898c2f-fd78-4d04-b5d3-683df6895fa3","weight":1},{"event_id":5705,"event_guid":"dfd165d9-bdec-59ab-bfc9-ad79fd5c7343","weight":1},{"event_id":5727,"event_guid":"702996dd-0853-4d00-81e2-3e39cae19500","weight":1},{"event_id":6631,"event_guid":"e1e7a102-8bc7-5ffc-b328-8ecc3aee0351","weight":1}],"recordings":[{"size":null,"length":null,"mime_type":"application/x-subrip","language":"eng","filename":"DRAFT_31c3-5960-en-Revisiting_SSL_TLS_Implementations.en_DRAFT.srt","state":"todo","folder":"","high_quality":true,"width":null,"height":null,"updated_at":"2022-01-15T16:22:21.995+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/DRAFT_31c3-5960-en-Revisiting_SSL_TLS_Implementations.en_DRAFT.srt","url":"https://api.media.ccc.de/public/recordings/50478","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":152,"length":3354,"mime_type":"video/mp4","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_sd.mp4","state":"downloaded","folder":"h264-sd","high_quality":false,"width":720,"height":576,"updated_at":"2016-02-03T14:06:47.818+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/h264-sd/31c3-5960-en-Revisiting_SSL_TLS_Implementations_sd.mp4","url":"https://api.media.ccc.de/public/recordings/5055","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":38,"length":3345,"mime_type":"audio/opus","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_opus.opus","state":"downloaded","folder":"opus","high_quality":true,"width":null,"height":null,"updated_at":"2014-12-29T03:04:59.523+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/opus/31c3-5960-en-Revisiting_SSL_TLS_Implementations_opus.opus","url":"https://api.media.ccc.de/public/recordings/5053","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":144,"length":3354,"mime_type":"video/webm","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_webm-sd.webm","state":"downloaded","folder":"webm-sd","high_quality":false,"width":720,"height":576,"updated_at":"2016-02-03T14:06:47.885+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/webm-sd/31c3-5960-en-Revisiting_SSL_TLS_Implementations_webm-sd.webm","url":"https://api.media.ccc.de/public/recordings/5056","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":76,"length":3345,"mime_type":"audio/mpeg","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_mp3.mp3","state":"downloaded","folder":"mp3","high_quality":true,"width":null,"height":null,"updated_at":"2014-12-29T03:05:34.052+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/mp3/31c3-5960-en-Revisiting_SSL_TLS_Implementations_mp3.mp3","url":"https://api.media.ccc.de/public/recordings/5054","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":399,"length":3354,"mime_type":"video/webm","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_webm-hd.webm","state":"downloaded","folder":"webm-hd","high_quality":true,"width":1920,"height":1080,"updated_at":"2016-02-03T14:06:47.965+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/webm-hd/31c3-5960-en-Revisiting_SSL_TLS_Implementations_webm-hd.webm","url":"https://api.media.ccc.de/public/recordings/5058","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"},{"size":319,"length":3354,"mime_type":"video/mp4","language":"eng","filename":"31c3-5960-en-Revisiting_SSL_TLS_Implementations_hd.mp4","state":"downloaded","folder":"h264-hd","high_quality":true,"width":1920,"height":1080,"updated_at":"2016-02-03T14:06:53.042+01:00","recording_url":"https://cdn.media.ccc.de/congress/2014/h264-hd/31c3-5960-en-Revisiting_SSL_TLS_Implementations_hd.mp4","url":"https://api.media.ccc.de/public/recordings/5135","event_url":"https://api.media.ccc.de/public/events/HLDDEFxCxCrQryx8fEacZw","conference_url":"https://api.media.ccc.de/public/conferences/31c3"}]}