π•­π–†π–˜π–˜π–•π–Žπ–˜π–™π–”π–‘ 🎬

Final Speaker Spotlight: Wade King on CBC Padding Oracles BSides Vancouver Island 2025


Listen Later

Join us for the last speaker spotlight before BSides Vancouver Island hits the Victoria Conference Centre on October 3! In this episode, we sit down with Wade King, whose cutting-edge research on CBC padding oracle vulnerabilities is reshaping how we think about encryption in 2025.

Wade shares his journey from bug bounty discoveries to uncovering multiple real-world account takeover vectorsβ€”all rooted in overlooked CBC implementations. From subtle attacks that bypass padding error detection to techniques for recovering initialization vectors, this interview dives deep into the risks developers face when trusting decrypted plaintext without understanding the underlying cryptographic pitfalls.

🎀 Topics Covered:

  • Why CBC encryption isn’t as β€œdead” as you think
  • Real-world padding oracle exploits in modern systems
  • A novel method for extracting padding oracles without triggering errors
  • How attackers can recover IVs and decrypt first blocks with enough samples
  • What developers and defenders must do to stay ahead
  • 🎟️ BSides Vancouver Island is almost sold out! Don’t miss your chance to be part of the island’s most passionate InfoSec gathering. Grab your tickets now at https://besidesvi.com and join us for world-class talks, grassroots networking, and breakthrough research.

    πŸ“’ Share the buzz using #BSidesVI and follow us on socials for updates.

    πŸ—“οΈ See you October 3 at the Victoria Conference Centre!

    Find Wade King at:

    LinkedIN: https://www.linkedin.com/in/wade-king-a083371a1/
    https://github.com/Sceptre-Cybersec
    https://github.com/wadeking98

    ...more
    View all episodesView all episodes
    Download on the App Store

    π•­π–†π–˜π–˜π–•π–Žπ–˜π–™π–”π–‘ 🎬By