Resend my activation email : Register : Log in 
BCF: Bike Chat Forums


Password recovery speeds...

Reply to topic
Bike Chat Forums Index -> The Geek Zone
View previous topic : View next topic  
Author Message

Ste
Not Work Safe



Joined: 01 Sep 2002
Karma :

PostPosted: 15:56 - 05 Apr 2006    Post subject: Password recovery speeds... Reply with quote

https://www.lockdown.co.uk/?pg=combi&s=articles

Demonstrates the time required to figure out passwords based on the types and number of characters used.

I'm off to change my passwords after reading that. Razz
 Back to top
View user's profile Send private message Visit poster's website You must be logged in to rate posts

fuzz
World Chat Champion



Joined: 24 Mar 2004
Karma :

PostPosted: 23:52 - 05 Apr 2006    Post subject: Reply with quote

Fook me, 76 billion passwords per second Shocked

Only a 10 character password that include upper and lowercase, numbers and special characters could possibly defeat it.

Must remember that then - all passwords must be changed!

Thing is though, if you were to run the cracker on one system say, class D, wouldn't you need to know the character set the password system used? A bruteforce cracker needs to know the character set to try each one in sequence, so the number of combinations is fixed. So the example of darren has not 308.9 million combinations if the character set has 62 characters. It would have 57 billion combinations. Unless you knew that the password or allowed characters had x possible characters, you would have to include all possible characters, or the cracker could run infinitely.

I know that a recent MD5 bruteforce cracker I used had a character set of 62 (letters and numbers) and took 40 minutes to complete 5 characters. So six characters would take 42 hours. (40x63) That was on a P4 2GHz system.
____________________
https://www.bikepics.com/members/fuzzbcf/
Bikes: '99 NSR125R, '00 SV650S, K1 GSX-R600, '97 CB500, K3 SV1000S, '16 VFR800
 Back to top
View user's profile Send private message You must be logged in to rate posts

Suzuki
Roger



Joined: 03 May 2005
Karma :

PostPosted: 11:48 - 06 Apr 2006    Post subject: Reply with quote

Of course, you can only crack a password in that manner if you have direct access to the encrypted password.

For example, if you're trying to crack a Hotmail password, the only way you can test a possible password is to attempt to log in to Hotmail. You never have real access to the stored encrypted password.
So... your hacking time is massively increased, as you have to wait for the cycle time of the system you're logging into. Also, you're likely to be stopped long before you get to even the 1000th attempt, let alone millions or billions of attempts.

All depends on the system.
____________________
<Simple> no I'm shaven Jon Razz
<Simple> it is a big enough hole.. I'll leave it now
Ride: 1999 Suzuki GSXR600 (yellow/black) IRC: Stats - Relationship Map
 Back to top
View user's profile Send private message Send e-mail Visit poster's website You must be logged in to rate posts
Old Thread Alert!

The last post was made 19 years, 313 days ago. Instead of replying here, would creating a new thread be more useful?
  Display posts from previous:   
This page may contain affiliate links, which means we may earn a small commission if a visitor clicks through and makes a purchase. By clicking on an affiliate link, you accept that third-party cookies will be set.

Post new topic   Reply to topic    Bike Chat Forums Index -> The Geek Zone All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

Read the Terms of Use! - Powered by phpBB © phpBB Group
 

Debug Mode: ON - Server: birks (www) - Page Generation Time: 0.07 Sec - Server Load: 0.81 - MySQL Queries: 14 - Page Size: 37.45 Kb