Tag Archive for: cisco

Cisco switches to weaker hashing scheme, passwords cracked wide open

Password cracking experts have reversed a secret cryptographic formula recently added to Cisco devices. Ironically, the encryption type 4 algorithm leaves users considerably more susceptible to password cracking than an older alternative, even though the new routine was intended to enhance protections already in place.

It turns out that Cisco’s new method for converting passwords into one-way hashes uses a single iteration of the SHA256 function with no cryptographic salt. The revelation came as a shock to many security experts because the technique requires little time and computing resources. As a result, relatively inexpensive computers used by crackers can try a dizzying number of guesses when attempting to guess the corresponding plain-text password. For instance, a system outfitted with two AMD Radeon 6990 graphics cards that run a soon-to-be-released version of the Hashcat password cracking program can cycle through more than 2.8 billion candidate passwords each second.

By contrast, the type 5 algorithm the new scheme was intended to replace used 1,000 iterations of the MD5 hash function. The large number of repetitions forces cracking programs to work more slowly and makes the process more costly to attackers. Even more important, the older function added randomly generated cryptographic “salt” to each password, preventing crackers from tackling large numbers of hashes at once.

Read 7 remaining paragraphs | Comments


Ars Technica » Technology Lab

Cisco: Will New Charges Topple China Market Share? – Seeking Alpha

Cisco: Will New Charges Topple China Market Share?
Seeking Alpha
In what appears to be a retaliatory move, China Unicom (CHU) has blocked Cisco from its Internet backbone network, citing concerns of espionage and 'backdoors' in equipment. The fallout from the spy charges is still unknown. Will Cisco lose Chinese

and more »

Espionage China – read more

Cisco releases major update to its security management product

Cisco just recently introduced an updated version of its security management tool CSM.  The new release brings with it some nice new features and functionality to the tool.  If you haven’t heard of Cisco Security Manager (CSM) before, in a nutshell it is Cisco’s consolidated GUI for management, monitoring, reporting and troubleshooting of its VPN, Firewall and IPS product lines. Cisco Security Manager,…
jheary’s blog

Tutorial: Cisco Routers Add Web Security with Cisco ScanSafe

Cisco launched this feature to the market last month at Interop. In a nutshell, it provides IOS routers with intelligent, identity aware, traffic redirection to the Cisco ScanSafe web security cloud offering. ScanSafe provides the following web security features as a cloud service: Read more

URL Filtering
Scanlets analyze all elements of a web request including HTML, JavaScript, Flash and even obfuscated…
jheary’s blog