Re: [Friendly Attack Request] How fast can someone crack MD5?

worsel_at_c112927lin.svinfra.compuware.com
Date: 06/08/04


Date: 8 Jun 2004 14:01:39 -0400


>> How effective is MD5 in practice?

>> This is an invitation for a friendly attack to get a sample
>> of how fast an MD5 of a casual passphrase can be cracked. ...

> You /do/ realize that an MD5 value is *not* an encryption of data, but a
> 'checksum' (a 'Message Digest', in fact), don't you?

I understand that MD5 is a 128 bit message digest with a strength
of ~125(?) bits. Consequently, there are ~10^38 distinct values.

> This means that there's no way to reverse an MD5 value into the
> plaintext that was used to generate it, for the same reasons that you
> will never be able to reverse the value 35 into a well known passage
> from the Old Testament of the Bible.

>> The passphrase is a proper single sentence of 20 to 25 words, ...
>> only printable characters ... linefeed, no mispellings, ...

If used randomly, an ordinary vocabulary of 2000 words would produce
~10^76 distinct values for a strength of ~252 bits.

In practice, a proper single sentence has much less latitude, but is
far easier to remember without writing down. Attacks take advantage
of these predictabilities. I believe the rule of thumb without
proper nouns or numbers is ~4 bits/word which implies a strength of
~100 bits, comparable to MD5.

The object of the exercise is to find out whether the strength of
such easy-to-remember sentences are in fact comparable to MD5's limits
or if there is an unknown (to me) vulnerability in their use.

Thank you,

-- 


Relevant Pages

  • Re: Ideas for a Junior training Program
    ... juniors and I have done pretty well both at national that international ... a big fan though) 1 practice should have a long steady state (you can ... During the strength practice you can throw at them a bunch ... You don't need to do many exercises the one that I suggest are squat, ...
    (rec.sport.rowing)
  • Re: Which workout parameters to maximize strength only (not size)?
    ... Is it a reasonable summary of the guidelines? ... You can build endurance ... you need volume for strength too. ... I think it was Zatsiorsky who said to practice as often as possible ...
    (misc.fitness.weights)
  • OT So Sue Me Already (was: Christmas gift idea suggestions)
    ... LOL  When the Feats Of Strength begin? ... there have been schisms in the Festivus community in recent ... so there is some diversity of practice these days. ...
    (rec.equestrian)
  • Re: Which one is easier: Unicycle or Handstand?
    ... either of those things is the strength you will need to gain. ... That indirectly means you'll be able have longer unicycle practice ... my longest handstand is probably around 5 seconds. ...
    (rec.juggling)
  • Re: Epoxy xtrength?
    ... to mix epoxy or JB Weld... ... It's not a good practice. ... Also make sure you do not mix small quantities on a porous surface. ... they are the same strength. ...
    (rec.models.rc.air)

Quantcast