5 ms·
From the readme.txt file, Gawker uses a really outdated hashing algorithm known as DES (Data Encryption Standard). Because DES has a maximum of 8 chars using a
by wippler 16y ago
From the readme.txt file,
Gawker uses a really outdated hashing algorithm known as DES (Data Encryption Standard). Because DES has a maximum of 8 chars using a password like "abcdefgh1234" only the first 8 characters "abcdefgh" are encrypted and stored in the database. If your password is longer than 8 characters you only need to enter the first 8 characters to log in!
Is this true? I tested it now and it needed the full password for a successful login.
- tptacek 16y agoDES crypt (I don't know that that's what they're using) is better than salted SHA1, vis a vis crackability.
- bbatsell 16y agoI'm not a cryptographer by any means, so please forgive and correct any errors. I'm assuming you're just saying that building rainbow tables once you have a static salt and the hashes becomes a feasible proposition? Wouldn't using a dynamic salt with each hash make a full dump like this significantly less crackable than DES with several weaknesses and a 56-bit cipher? (And that's, of course, assuming that the DES key doesn't leak along with the dump.)
- tptacek 16y agoDES crypt(3) doesn't have a "key"; it truncates/pads passwords into a DES key used to encrypt (with a salt) an all-zeroes block. It's horrible cryptography, but it's slower than SHA1.
- tzs 16y agoHow so? People have found collision attacks on SHA1 that are significantly better than brute force, but I thought it was still safe against finding a plaintext that hashes to a given hash value.
- brandon 16y agoWell, this isn't the whole picture, but SHA is faster than DES. Certainly that'd be a factor from a brute-force perspective.
- jacquesm 16y ago> I don't know that that's what they're using I don't know that either, but regardless, I think you should have a look: ThomasPtacek@xxx.com is in there, assuming that's yours. elptacek is in there as well.
- tptacek 16y agoBest of luck with that, jacques.
- mfukar 16y agoAssuming best public cryptanalysis of each?
- blantonl 16y agoFrom what readme.txt file?