The design of Advanced Encryption Standard (AES), aka Rijndael, allows remote attackers to recover AES keys via timing attacks on S-box lookups, which are difficult to perform in constant time in AES implementations.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/13785 | vdb entry vendor advisory |
http://cr.yp.to/antiforgery/cachetiming-20050414.pdf | vendor advisory |