http://blog.cryptographyengineering.com/2012/06/bad-couple-of-years-for-cryptographic.html
To avoid padding oracle attacks, always use authenticated encryption, such that a corrupted message always generates the same response in the same time.
_______________________________________________ cryptography mailing list cryptography@randombit.net http://lists.randombit.net/mailman/listinfo/cryptography