Re: Password Security




>
> If an attacker can "try" one per second, on average, then it will take
> about 7 million years. (6.9e6) (Yes, as other commentators said, you
> really are looking at the 50/50. So divide all my results by 2 if you
must)
>
##############################################
Here are some passwds for servers running Front Page (right column).
test (iqstech)
pdgt ( rkm)
4210 ( esven)
rules (ahold)
Look how weak they are It took John The Ripper about 4 minutes to crack
them. That's 4 out of 31 in the file that I created.
I'll let JTR run on the file for no more than 2 days at the most. Noone in
their right mind is going to spend months trying to crack them unless it's
one company trying to find out what their competitor is doing or something
else that might mean a lot of money and if it means that much, I'm sure they
will look for another way to enter. The point is that it's just not
necessary to ANALyse passwds that much. If you force your users to go w/
the 8 mixed characters or more or as someone said, use phrases, that's the
end of the story. BTW, if you're using front page, make sure that
/_vti_pvt/service.pwd is not readable.
donnie


.



Relevant Pages

  • Re: bin ich sehr krank?
    ... Eine Übersicht über alle erbrachten Leistungen wird ... einmal jährlich an die Versicherten verschickt. ... ihr tauschen. ... Das wäre auch in Deutschland eine sinnvolle Sache. ...
    (de.talk.tagesgeschehen)
  • Re: Khalid Khan will deal Samuel
    ... Until Austin perceives the commerces instantly, Abu won't crack any ... invisible theatres. ... If you will divide Bert's swamp towards ...
    (sci.crypt)
  • Re: custom licensing scheme
    ... > at it, who can crack anything. ... difficult for the attacker who only has a standard debugger to have his way ... The attacker has the upper hand because ... > mainly people who are building in-house systems. ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: custom licensing scheme
    ... > at it, who can crack anything. ... difficult for the attacker who only has a standard debugger to have his way ... The attacker has the upper hand because ... > mainly people who are building in-house systems. ...
    (microsoft.public.vc.language)
  • Re: custom licensing scheme
    ... > at it, who can crack anything. ... difficult for the attacker who only has a standard debugger to have his way ... The attacker has the upper hand because ... > mainly people who are building in-house systems. ...
    (microsoft.public.vc.atl)