HEIST attack

GPTKB entity

Statements (23)
Predicate Object
gptkbp:instanceOf cybercrime
gptkbp:affects gptkb:HTTP/2
HTTPS
TLS
gptkbp:category gptkb:security
side-channel attack
gptkbp:discoveredBy gptkb:Mathy_Vanhoef
Tom Van Goethem
gptkbp:enables session hijacking
cookie theft
exfiltration of sensitive data
gptkbp:fullName HTTP Encrypted Information can be Stolen through TCP-windows attack
https://www.w3.org/2000/01/rdf-schema#label HEIST attack
gptkbp:publicDisclosure 2016
gptkbp:relatedTo gptkb:CRIME_attack
gptkb:BREACH_attack
gptkbp:target web applications
web browsers
gptkbp:uses compression side-channel
response splitting
timing attack
gptkbp:bfsParent gptkb:CRIME_attack
gptkbp:bfsLayer 6