4 ms·
Given that any login form can be used to rapidly confirm password reuse it's hard to see how ECB introduces new issues here.
by bbbbb5 4y ago
Given that any login form can be used to rapidly confirm password reuse it's hard to see how ECB introduces new issues here.
- tptacek 4y agoAttackers don't generally control the login forms, but they do have the LastPass vaults, so this response doesn't make much sense.
- bbbbb5 4y agoAttacker doesn't need to control the login form to use it as an oracle to confirm password reuse.
- tptacek 4y agoReuse of what? If you're assuming the attacker already has a valid password, the list of URLs they use it also irrelevant, as is the password vault. Just do what real attackers do and hit every single known login page on the Internet with it.
- bbbbb5 4y agoThat's exactly what I'm saying :) If the attacker doesn't have the valid password, the knowledge that two different sites share the same password isn't exactly game-changing. And if the attacker does have the password, they'll figure out where it works regardless of access to LastPass db.
- tptacek 4y agoIt's not nothing, and it's weird to be strident about it, but the obvious problem here is the offline cracking of the vault passwords; this isn't worth arguing about.
- bbbbb5 4y ago> It's not nothing, and it's weird to be strident about it To an outsider, hearing people talk about how LastPass used Very Bad ECB mode makes it sound like a fuckup with immediate and dramatic effect on the security of their passwords, that isn't exactly true. Nobody should have been using LastPass, but we can still be realistic about the threats facing those who did. > but the obvious problem here is the offline cracking of the vault passwords; this isn't worth arguing about. Of course not, but that's a completely separate issue from their choice of AES mode.
- cmeacham98 4y agoKnowing you reused the same password between your Amazon and $CompromisedWebsite accounts (but nowhere else, maybe you set them up the same day) gives attackers a significant advantage over having to try every password they have on every website.
- bbbbb5 4y agoI don't think this is a significant advantage, the cost of an incorrect password attempt is essentially zero. Trying "every password they have on every website" for an individual will still be a very small set of passwords to try.
- Shaanie 4y agoI could see password reuse being used as a reason for trying brute force/dictionary attacks. E.g. You see that a user has used the same password on Coinbase as X, which could indicate that the user isn't using randomly generated passwords and therefore be potentially vulnerable to such attacks. Kind of a long shot though.
- cmeacham98 4y agoAttackers generally aren't targeting a specific individual, they got a dump of X million passwords from some compromised website. Being able to connect those directly to working accounts rather than having to burn IPs and get them rate limited and/or banned trying duds _is_ valuable information. If you have some attacker after specifically you, yes this information is of less use to them, because they will have tried every password of yours they have on every website already hoping you reuse passwords.