The POODLE vulnerability is a design flaw in SSL 3.0 that lets a man-in-the-middle attacker decrypt small pieces of an encrypted session, one byte at a time, until they recover something valuable like your session cookie. Tracked as CVE-2014-3566 and disclosed by Google researchers in October 2014, it cannot be patched, because the weakness is […]