Say Goodbye to SSL 3.0

Today we are publishing details of a vulnerability in the design of SSL version 3.0. This vulnerability allows the plaintext of secure connections to be calculated by a network attacker. I discovered this issue in collaboration with Thai Duong and Krzysztof Kotowicz (also Googlers).

Google Online Security Blog: This POODLE bites: exploiting the SSL 3.0 fallback.