On the (provable) security of TLS: Part 1
blog.cryptographyengineering.com
blog.cryptographyengineering.com
https://threatpost.com/en_us/blogs/new-attack-uses-ssltls-in...
And no, I've found no other details about the new attack, but if anyone knows anything, particularly mitigation methods, please post them.
I think Matthew is doing something really good here by trying to bridge the gap between the proofs and the messy reality.
The fact that someone has vulnerability only goes to show you that we probably need to do more work both with the proofs and changing TLS so its easier to proof. This is possibly the third time that an ignored, "academic crypto issue' has broken TLS. This is of course assuming that they have a protocol flaw and not an implementation one.