USENIX Security '26 Artifacts: Opossum Attack: Application Layer Desynchronization using Opportunistic TLS
收藏官方服务:
资源简介:
Artifacts for our USENIX Security '26 paper "Opossum Attack: Application Layer Desynchronization using Opportunistic TLS". As part of our artifacts, we release our proof-of-concept exploits for HTTPS as well as our proof-of-concept desynchronizations for the additional protocols identified as affected. We further provide Dockerfiles for software implementations that support opportunistic HTTP. Further details can be found in the individual README files.
本研究工件对应我们发表于2026年USENIX安全研讨会的论文《负鼠攻击:基于机会型传输层安全(Opportunistic TLS)的应用层去同步》。 作为本次发布的研究工件的一部分,我们公开了针对超文本传输安全协议(HTTPS)的概念验证(proof-of-concept)漏洞利用程序,以及针对其余被确认受影响协议的概念验证去同步攻击实现。此外,我们还提供了支持机会型超文本传输协议(opportunistic HTTP)的各类软件实现的Dockerfile构建文件。 更多细节请参阅各配套README文件。
提供机构:
Zenodo创建时间:
2025-12-08



