BREACH.HTTPS.Compression.Information.Disclosure

description-logoDescription

This indicates an attack attempt to exploit an Information Disclosure vulnerability in HTTPS Protocol.
The vulnerability is due to the way the protocol handles compressed HTTPS responses. A remote attacker can exploit this to again access to sensitive information.

affected-products-logoAffected Products

Applications that supports HTTP compression

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Refer to the following advisory for mitigation:
http://www.kb.cert.org/vuls/id/987798

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)