Re: Re: ADS Password Storage Protection



I think everyone is on the same page about the mathematical complexity of passwords either coming from length or from additional character ranges.

But how does one begin to crack a password? One would first need the password hash. Where are the password hashes stored? How are the accessed? Once you have the answer to those questions, then you may decide that a 4-character simple password is good enough. Because if an attacker can crack your password hash, they had or HAVE access to your password hash, which means they've got system rights to your Domain Controllers! What's the bigger problem?

Sincerely,

Eric B.

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------



Relevant Pages

  • Re: Password Storage
    ... strongly believe that storing passwords in documents ... how do you account for having multiple ... Norwich University ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ...
    (Security-Basics)
  • Re: Security procedure question
    ... I remember reading somewhere that one practice for having strong passwords ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence in Information Security. ... If this was indeed the case then ATM PIN codes would be written on the credit cards:) ...
    (Security-Basics)
  • Re: Password Cracking using Djohn
    ... > employees and we are moving over to user created passwords. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence ... Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. ...
    (Security-Basics)
  • Re: Security procedure question
    ... It has no value in the modern world, but maybe if you wrote the passwords on $1000 bill maybe then. ... Ive lost three credit cards so far as well!!!! ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence in Information Security. ...
    (Security-Basics)
  • Re: Security procedure question
    ... I remember reading a paper where the author, a university professor, let 1/3 of his students pick their own passwords, told 1/3 to use randomly generated passwords, and told the remaining 1/3 to use the above procedure. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic ... Excellence in Information Security. ...
    (Security-Basics)