dingo icon indicating copy to clipboard operation
dingo copied to clipboard

Security: Padding done right

Open Opensourcecommunitydevelopment opened this issue 7 years ago • 0 comments

the current repeats the same char only by 500 times, No respect of actual query or Type length.. Making it pointless/guessable. While there is never a 500 chars domains according To RFC. Useless overhead.

API clients concerned about possible side-channel privacy attacks using the packet sizes of HTTPS GET requests can use this to make all requests exactly the same size by padding requests with random data.

see https://github.com/pforemski/dingo/issues/26