shadowsocks / shadowsocks-org

www.shadowsocks.org
MIT License
877 stars 539 forks source link

[paper] Partitioning Oracle Attacks & Shadowsocks #170

Open DuckSoft opened 3 years ago

DuckSoft commented 3 years ago
fortuna commented 3 years ago

This attack is intended to reduce the number of network calls for a dictionary-based attack. You are only vulnerable if you use a weak or leaked password. The best way to protect against this attack is to use a unique long random password that is not leaked.