### [CVE-2013-2566](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2566) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext. ### POC #### Reference - http://www.isg.rhul.ac.uk/tls/ - http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html - http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html - http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html - http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html - http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/Artem-Salnikov/devops-netology - https://github.com/Artem-Tvr/sysadmin-09-security - https://github.com/Justic-D/Dev_net_home_1 - https://github.com/Kapotov/3.9.1 - https://github.com/Vainoord/devops-netology - https://github.com/Valdem88/dev-17_ib-yakovlev_vs - https://github.com/Vladislav-Pugachev/netology-DevOps-dz_-14 - https://github.com/WiktorMysz/devops-netology - https://github.com/alexandrburyakov/Rep2 - https://github.com/alexgro1982/devops-netology - https://github.com/alexoslabs/HTTPSScan - https://github.com/bysart/devops-netology - https://github.com/dmitrii1312/03-sysadmin-09 - https://github.com/geon071/netolofy_12 - https://github.com/halencarjunior/HTTPSScan-PYTHON - https://github.com/ilya-starchikov/devops-netology - https://github.com/mikemackintosh/ruby-qualys - https://github.com/nikolay480/devops-netology - https://github.com/pashicop/3.9_1 - https://github.com/pyllyukko/user.js - https://github.com/stanmay77/security - https://github.com/tzaffi/testssl-report - https://github.com/vitaliivakhr/NETOLOGY - https://github.com/yellownine/netology-DevOps