Security Basics mailing list archives
Re: Password Cracking
From: Dave Aronson <spamtrap.secfocus () dja mailme org>
Date: Wed, 15 Sep 2004 20:02:31 -0400
Jonathan Loh <kj6loh () yahoo com> wrote:
One of my fellow sysadmins uses the following: Take any word could be from the dictionary or not. Use 0's, 1's, 5's and so on for letter substitutions.
Many password crackers use such substitutions. To make total subbing (which is what I would guess they try first) not work, what I do is not sub for every one. At various times, I have subbed only the first one, odd-numbered ones (i.e., 1st, 3rd, 5th, etc.), even-numbered ones, every 3rd starting with the 2nd, and other patterns. Of course, random would probably be a bit better, but makes it much harder to remember.... --------------------------------------------------------------------------- Computer Forensics Training at the InfoSec Institute. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse so that it never happens again. http://www.infosecinstitute.com/courses/computer_forensics_training.html ----------------------------------------------------------------------------
Current thread:
- Re: Password Cracking, (continued)
- Re: Password Cracking GuidoZ (Sep 27)
- RE: Password Cracking Oguzhan AKYUZ (Sep 09)
- RE: Password Cracking Teo Gomez (Sep 10)
- Re: Password Cracking Über GuidoZ (Sep 13)
- RE: Password Cracking Sadler, Connie (Sep 10)
- RE: Password Cracking Michael Shirk (Sep 11)
- Re: Password Cracking Steve (Sep 13)
- Re: Password Cracking Miles Stevenson (Sep 18)
- Re: Password Cracking Steve (Sep 13)
- RE: Password Cracking Andrew Shore (Sep 13)
- RE: Password Cracking Jonathan Loh (Sep 15)
- Re: Password Cracking Dave Aronson (Sep 18)
- RE: Password Cracking Nick Owen (Sep 15)
- RE: Password Cracking William Baglivio (Sep 15)
- RE: Password Cracking easternerd (Sep 23)
- Re: Password Cracking GuidoZ (Sep 15)
- Re: Password Cracking David J. Bianco (Sep 16)
- RE: Password Cracking Jonathan Loh (Sep 15)
- RE: Password Cracking Bénoni MARTIN (Sep 16)
- RE: Password Cracking James McGee (Sep 16)
- Re: Password Cracking Steve (Sep 17)
- RE: Password Cracking Kenton Smith (Sep 17)
- RE: Password Cracking Kenton Smith (Sep 19)
(Thread continues...)