What is a timing attack in the context of web authentication?
-
A
Exploiting measurable differences in response time to infer whether a guess (e.g., password or token) is partially correct
-
B
Attacking a server during peak traffic hours to maximize impact
-
C
Sending requests with manipulated timestamp headers
-
D
Forcing a session timeout by replaying old authentication tokens