Full Disclosure mailing list archives

Re: NEW windows password encryption flaw..


From: Corey Hart <chart () acad stedwards edu>
Date: Wed, 23 Jul 2003 14:29:56 -0500

all those certs and not a clue...they just spead up an old process

Darren Bennett wrote:

Is this new? I read about it on slashdot...

http://lasecpc13.epfl.ch/ntcrack/

Basically, it seems that Microsoft has (yet again) screwed up the
implementation of their encryption scheme. This makes cracking any hash
a matter of seconds. Oops...
--
-----------------------------------------------
Darren Bennett
CISSP, Certified Unix Admin., MCSE, MCSA, MCP +I
Sr. Systems Administrator/Manager
Science Applications International Corporation
Advanced Systems Development and Integration
-----------------------------------------------

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: