http://www.h-online.com/security/news/item/Tool-cracks-SSL-cookies-in-just-ten-minutes-1346387.html
Tool cracks SSL cookies in just ten minutes
SSL Icon On Friday, 23 September, at the Ekoparty security conference in Buenos Aires, researchers Juliano Rizzo and Thai Duong are planning to present a tool known as BEAST (Browser Exploit Against SSL/TLS). The tool allows an attacker on the same network to intercept and decrypt SSL cookies by performing a 'blockwise-adaptive chosen-plaintext' attackPDF on encrypted packets.
BEAST is now able to crack an encrypted PayPal cookie in less than ten minutes.
No specific remedies for this problem are available at present.
http://www.h-online.com/security/news/item/BEAST-creators-develop-new-SSL-attack-1702136.html
http://www.ekoparty.org/index.php
ekoparty Security Conference 8° edición