Re: New article on SecurityFocus: John the Ripper creator interview



It greatly disapoints me to see Solar mainly remembered for this
program instead of all the breakthroughs and innovations he has
accomplished. While it is nice to honor him with an article about
john, let us not be unmindful that he pioneered the heap overflow as
many of us know it (or rather the unlink() technique, but he opened
pandora's box), or the non-exec stack patches, or openwall linux, or
all of his hard work on pam modules and so on.

It would have been nice to see some of that mentioned in his interview
somewhere, people tend to forget that john the ripper was just a small
piece of this mans work.

On 2/22/06, Erin Carroll <amoeba@xxxxxxxxxxxxxx> wrote:
John the Ripper 1.7, by Solar Designer
interview by Federico Biancuzzi
2006-02-22

Federico Biancuzzi interviews Solar Designer, creator of the popular John
the Ripper password cracker. Solar Designer discusses what's new in version
1.7, the advantages of popular cryptographic hashes, the relative speed at
which many passwords can now be cracked, and how one can choose strong
passphrases (forget passwords) that are harder to break.

http://www.securityfocus.com/columnists/388

--
Erin Carroll
Moderator
SecurityFocus pen-test list
"Do Not Taunt Happy-Fun Ball"

--
No virus found in this outgoing message.
Checked by AVG Free Edition.
Version: 7.1.375 / Virus Database: 268.0.0/267 - Release Date: 2/22/2006



------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner:

Hackers are concentrating their efforts on attacking applications on your
website. Up to 75% of cyber attacks are launched on shopping carts, forms,
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are
futile against web application hacking. Check your website for vulnerabilities
to SQL injection, Cross site scripting and other web attacks before hackers do!
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------



------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
As attacks through web applications continue to rise, you need to proactively
protect your applications from hackers. Cenzic has the most comprehensive
solutions to meet your application security penetration testing and
vulnerability management needs. You have an option to go with a managed
service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm).
Download FREE whitepaper on how a managed service can help you:
http://www.cenzic.com/news_events/wpappsec.php
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request@xxxxxxxxxx
------------------------------------------------------------------------------



Relevant Pages

  • Obsidis n1 released!
    ... The project is managed by Rosiello Security in conjunction with members of Packetstorm Security, Astalavista, Information Security Writers, Blacksun and Hackers Center who make up the Committee. ... *) Enterprise Security Management by Penetrate ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
    (Pen-Test)
  • Risks Digest 27.16
    ... ACM FORUM ON RISKS TO THE PUBLIC IN COMPUTERS AND RELATED SYSTEMS ... Security Firm Bit9 Hacked, Used to Spread Malware Security Firm ... Super Bowl blackout was caused by electrical relay ... The timing of the attacks coincided ...
    (comp.risks)
  • Re: Pelosi & Reid Will Not Like Progress Cited in Iraq Quarterly Report
    ... This is from 4 pages, less than 10 percent, of the report. ... Reid has called General Petraeus a liar for saying progress had been made in Iraq, and more recently he has called Petraeus and outgoing chairman of the Joint Chiefs,Marine Gen. ... Assessment of the Security Environment— ... the frequency and intensity of attacks on the ...
    (soc.retirement)
  • Re: Pelosi & Reid Will Not Like Progress Cited in Iraq Quarterly Report
    ... This is from 4 pages, less than 10 percent, of the report. ... Reid has called General Petraeus a liar for saying progress had been made in Iraq, and more recently he has called Petraeus and outgoing chairman of the Joint Chiefs,Marine Gen. ... Assessment of the Security Environment— ... the frequency and intensity of attacks on the ...
    (soc.retirement)
  • How many people did Romneys tax payment % KILL?
    ... Obama Scrambles For Cover As Benghazi Lie Explodes ... White House had been informed on day one that al-Qaeda terrorists were ... attacks on Americans in Libya. ... communicating the special 9/11 security threat, ...
    (rec.arts.tv)