News, learn, share and discuss about Africa & other life issues with over 250, 000 members worldwide & thousands of discussion going on. CLICK HERE TO JOIN FREE and get access to write, reply, use private message & much more free!. CLICK HERE TO SAY HELLO
AfricaTopForum
May 27, 2012, 12:46:35 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
 
   Home   Help Rules Search Login Register  
Pages: [1]   Go Down
  Send this topic  |  Print  
Author Topic: Background of Password cracking  (Read 122 times)
0 Members and 1 Guest are viewing this topic.
Webmaster
Global Captain
*****
Offline Offline

Gender: Male
Posts: 2049



Activity
24%



« on: October 14, 2011, 04:28:14 AM »
ReplyReply


Passwords to access computer systems are stored in some form in a database to the system to perform password verification. To enhance the privacy of the passwords, the password verification data stored usually occurs when applying a round function to the password, possibly in combination with other available data. For simplicity of discussion, when one-way function does not incorporate a secret key, not the password, we refer to the function so that was used as a hash and its output as a hashed password. Although the functions that create hashed passwords may be cryptographically secure, possession of a hashed password provides a quick way to check guesses the password by applying the function of each guess, and comparing the result of verification of data. The most widely used hash functions can be calculated quickly and the attacker can do this repeatedly with different guesses until a valid match is found, ie, the plaintext password has been recovered.

The term password cracking is typically limited to recovery of one or more plaintext passwords from hashed passwords. Password cracking requires that an attacker can gain access to a hashed password, either by reading the database password verification or intercepting a hashed password sent over an open network, or have another way to quickly and limit test, if the password is guessed correctly. Without the hashed password, the attacker can attempt to access the computer system in question with guessed passwords. However well designed systems limit the number of failed login attempts and can alert administrators to track the source of attack, if you exceed that quota. With the hashed password, the attacker can work undetected, and if the attacker has obtained several hashed passwords, the chances of cracking at least one is quite high. There are many other ways of obtaining passwords illicitly, such as social engineering, the registration of wiretapping, keystrokes, login spoofing, dumpster diving, timing attack, etc. However, cracking usually designates a guessing attack.

Cracks can be combined with other techniques. For example, a method using hash-based authentication challenge-response password verification can provide a hashed password to a spy who can crack the password. A series of stronger cryptographic protocols exist that do not expose hash passwords during verification over a network, either for their protection in the transmission through a high quality key, or by using a key test of zero knowledge.
Logged
AfricaTopForum
   

 Logged
Pages: [1]   Go Up
  Send this topic  |  Print  
 
Jump to:  


Related Topics
Subject Started by Replies Views Last post
5 Mistakes You Might Be Making When Choosing A Password
TECHNICAL DISCUSSIONS BOARD
Webmaster 0 100 Last post October 04, 2011, 10:12:50 AM
by Webmaster
BackGround Checks and Balances
BUSINESS AND ECONOMY ENLIGHTMENT DISCUSSIONS BOARD
Webmaster 0 84 Last post October 14, 2011, 12:24:50 PM
by Webmaster
Wonder Why a Hiring Company Wants to Check Your Background?
JOBS and CAREERS DISCUSSIONS BOARD
Perfect 0 160 Last post November 29, 2011, 03:44:32 AM
by Perfect
What's the best background check software?
SOFTWARE and PROGRAMMING DISCUSSION BOARD
Webmaster 0 422 Last post December 27, 2011, 08:06:31 AM
by Webmaster
SECURITY: Cracking open the LRA to better eliminate it
AFRICA POLITICS NEWS BOARD
Webmaster 0 41 Last post March 21, 2012, 02:57:47 AM
by Webmaster

If you require any help or if you have any questions, challenges, comments, suggestions or criticism please don’t hesitate Click here to write,
if it is sensitive send Personal Message to Global Captain or Admin. We love to hear from members and general public.

Contact |African Discussion Forum | Powered by SMF | SMF © 2006-2011, Simple Machines