Penetration Testing mailing list archives

Re: [PEN-TEST] Brute Forcing MS-EFS


From: Dug Song <dugsong () MONKEY ORG>
Date: Sun, 3 Dec 2000 13:17:03 -0500

On Mon, Dec 04, 2000 at 01:58:43AM -0800, Ryan Russell wrote:

DESX is an extension to DES that is supposed to provide more
security by utilizing multiple DES operations with different keys.
For example, triple-DES is a form of DESX, and it's good for 112 or
168 bits, depnding on how you do it.

just to be pedantic, 3DES (encrypt, decrypt, encrypt) is most
certainly NOT a form of DESX (whiten, encrypt, whiten). DESX's
whitening step is just XOR with some key material, not an additional
DES operation...

-d.

---
http://www.monkey.org/~dugsong/


Current thread: