Software
HTTPS Bicycle attack reveals password length, allows easier brute-forcing
Reported by net-security.org
Dutch security researcher Guido Vranken has come up with a new attack that could allow attackers to discover the length of a user’s password – and therefore make it easier to brute-force it – by analyzing a packet capture of the user’s HTTPS traffic.