Re: [Full-disclosure] Comparing Algorithms On The List OfHard-to-brut-force?

From: James Longstreet (jlongs2_at_uic.edu)
Date: 11/01/05

  • Next message: Andrew Lockhart: "[Full-disclosure] Gateway 7001 A/B/G AP: Selection of improper regulatory domains and channels"
    Date: Tue, 1 Nov 2005 13:04:16 -0600
    To: full-disclosure@lists.grok.org.uk
    
    

    On Nov 1, 2005, at 12:11 PM, Brandon Enright wrote:

    > IIRC, there aren't any good known attacks against Blowfish, AES, or
    > Twofish
    > so the *RIGHT* algorithm is whatever works best for your application.

    Depending on the situation, there may be a feasible cache-timing
    attack on software implementations of AES: http://cr.yp.to/
    antiforgery/cachetiming-20050414.pdf

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Andrew Lockhart: "[Full-disclosure] Gateway 7001 A/B/G AP: Selection of improper regulatory domains and channels"

    Relevant Pages

    • Re: [Full-disclosure] =?utf-8?b?0J3QkDogV1BBIGF0dGFjayBpbXByb3ZlZCB0?= =?utf-8?q?o_1min=
      ... Rijndael (AES) is a symmetric block cipher. ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure-charter.html ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: [Full-disclosure] List of Fuzzers
      ... int authenticate(char* username, char* password) { ... that fuzzing has its limitations (that can be fixed and applied like ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure- ...
      (Full-Disclosure)
    • Re: [Full-disclosure] List of Fuzzers
      ... valid to use someone else's fuzzing framework against one's own ... I see "Which fuzzer on this list will help me find the most ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure- ...
      (Full-Disclosure)
    • Re: [Full-disclosure] List of Fuzzers
      ... valid to use someone else's fuzzing framework against one's own ... Full-Disclosure - We believe in it. ... Charter: http://lists.grok.org.uk/full-disclosure- ...
      (Full-Disclosure)
    • [Full-disclosure] List Charter
      ... This document serves as a charter for the [Full-Disclosure] mailing ... Typically posting will be ... members may be removed from the list by the management. ...
      (Full-Disclosure)