Bugtraq mailing list archives

Re: swc / ActivCard


From: Michal Zalewski <lcamtuf () DIONE IDS PL>
Date: Wed, 23 Aug 2000 22:52:53 +0200

On Wed, 23 Aug 2000, Michal Zalewski wrote:

[...] my guesses from expected probability - 1 / 100000000 - to
something around 1 / 200 to 1 / 1000 in most cases. But I'm not sure
if I found a rule only for my input set and this (maybe specific)
token, or AC algorithm is somewhat weaker than we should expect?

Ops, pardon, I meant 1 / 2000 - 1 / 10000. That's less or more equal to my
declared 35% within 100 attempts. Sorry again, I was writing this response
in hurry.

_______________________________________________________
Michal Zalewski [lcamtuf () tpi pl] [tp.internet/security]
[http://lcamtuf.na.export.pl] <=--=> bash$ :(){ :|:&};:
=-----=> God is real, unless declared integer. <=-----=


Current thread: