Tag Archive for: weaker

Cisco switches to weaker hashing scheme, passwords cracked wide open

Password cracking experts have reversed a secret cryptographic formula recently added to Cisco devices. Ironically, the encryption type 4 algorithm leaves users considerably more susceptible to password cracking than an older alternative, even though the new routine was intended to enhance protections already in place.

It turns out that Cisco’s new method for converting passwords into one-way hashes uses a single iteration of the SHA256 function with no cryptographic salt. The revelation came as a shock to many security experts because the technique requires little time and computing resources. As a result, relatively inexpensive computers used by crackers can try a dizzying number of guesses when attempting to guess the corresponding plain-text password. For instance, a system outfitted with two AMD Radeon 6990 graphics cards that run a soon-to-be-released version of the Hashcat password cracking program can cycle through more than 2.8 billion candidate passwords each second.

By contrast, the type 5 algorithm the new scheme was intended to replace used 1,000 iterations of the MD5 hash function. The large number of repetitions forces cracking programs to work more slowly and makes the process more costly to attackers. Even more important, the older function added randomly generated cryptographic “salt” to each password, preventing crackers from tackling large numbers of hashes at once.

Read 7 remaining paragraphs | Comments


Ars Technica » Technology Lab

Cyber war with Pak! Why India is the weaker side – Rediff


The News International

Cyber war with Pak! Why India is the weaker side
Rediff
This clearly is the biggest instance of cyber warfare on India in recent times and the threat continues not only from Pakistan but also from China. While China looks to snoop into important defence information, Pakistan on the other hand defaces Indian
Assam violence: Cyber war continues, government blocks 89 more web pages to Economic Times
Cyber war: Blaming Pakistan is not enoughIndian Express
India accuses Pakistan of cyber warfare, workers' exodusThe News International
IBTimes India –Times of India –The Asian Age
all 1,019 news articles »

cyber warfare – read more