Article Sphere Logo
Main Article Categories

 Alternative Medicine
 Arts And Entertainment
 Automotives
 Beauty
 Business
 Communications
 Computer And Technology
 Disease And Illness
 Finance
 Food And Beverage
 Health And Fitness
 Home And Family
 Home Based Business
 Insurance
 Internet And E-Business
 Legal
 News And Society
 Pets And Animals
 Product Reviews
 Real Estate
 Recreation And Sports
 Reference And Education
 Self Improvement
 Shopping
 Travel And Leisure
 Women Health And Fitness
 Women Interests And Issues
 Work At Home
 Writing And Speaking
 All 511 Categories
 

Background of Password Cracking

By Expert Author: David Tang
View Summary | Submitted: 2006-01-03 | Word Count: 398 words | Views: 84 view(s)
David Tang
Passwords to access computer systems are usually stored, in some form, in a database in order for the system to perform password verification. To enhance the privacy of passwords, the stored password verification data is generally produced by applying a one-way function to the password, possibly in combination with other available data.

For simplicity of this discussion, when the one-way function does not incorporate a secret key, other than the password, we refer to the one way function employed as a hash and its output as a hashed password. Even though functions that create hashed passwords may be cryptographically secure, possession of a hashed password provides a quick way to verify guesses for the password by applying the function to each guess, and comparing the result to the verification data. The most commonly used hash functions can be computed rapidly and the attacker can do this repeatedly with different guesses until a valid match is found, meaning the plaintext password has been recovered.

The term password cracking is typically limited to recovery of one or more plaintext passwords from hashed passwords. Password cracking requires that an attacker can gain access to a hashed password, either by reading the password verification database or intercepting a hashed password sent over an open network, or has some other way to rapidly and without limit test if a guessed password is correct. Without the hashed password, the attacker can still attempt access to the computer system in question with guessed passwords. However well designed systems limit the number of failed access attempts and can alert administrators to trace the source of the attack if that quota is exceeded. With the hashed password, the attacker can work undetected, and if the attacker has obtained several hashed passwords, the chances for cracking at least one is quite high. There are also many other ways of obtaining passwords illicitly, such as social engineering, wiretapping, keystroke logging, login spoofing, dumpster diving, timing attack, etc.. However, cracking usually designates a guessing attack.

Cracking may be combined with other techniques. For example, use of a hash-based challenge-response authentication method for password verification may provide a hashed password to an eavesdropper, who can then crack the password. A number of stronger cryptographic protocols exist that do not expose hashed-passwords during verification over a network, either by protecting them in transmission using a high-grade key, or by using a zero-knowledge password proof.

About the Author/Author Bio

David and his team developed Article Post Robot, http://www.articlepostrobot.com, the software which can post articles to hundreds of article sites and mail lists automatically.

Article Source: http://www.articlesphere.com/Article/Background-of-Password-Cracking/5650

 
 
This article has been viewed 84 time(s).

More "Security" Related Articles

 

Listed below are more articles related to the above article from the "Security" article category.

People interested in the above article "Background of Password Cracking" are also interested in the related articles listed below:

The XP Antivirus 2008 is a deceitful, harmful and widespread counterfeit antispyware that has destroyed many computers on the internet. XP Antivirus 2008 occurs when a fake video codec is installed that contains malware, trojans and/or other viruses.
The win32/adware.virtumonde virus is a Trojan horse virus which is annoying and generally a nightmare to get rid of. Most people will experience a virus at some point in their life but this one, I have to say, is one of the worst there is. I say that because of its annoyance rather than it completely destroying your computer.
In this UK access control market research report we have studied the access control sector in private commercial applications and public non-residential applications together with use in retail, domestic, industrial and financial sectors. Major applications include hotels, offices and health establishments. The report analyses various types of equipment, some of which are integrated with other installations such as CCTV, intruder and fire alarm systems.
Firewalls can detect and stop probes into your system. If your system is properly secured, any probes will have no effect at all, so all the firewall is doing is telling you about them. It’s better to spend time checking your computer’s security rather than spend money on a firewall.
Sometimes it seems that you can never be safe on the Internet. You update your antivirus program, then read some story about the dangers of cookies or something. You download a ‘cookie crusher’ utility, then find out about port scanning. And spyware. And all the scary things hackers can do too your system. It’s amazing that anyone has the courage to go online at all.
When something is stored on your computer or sent by email, it means others can get their hands on it. While few of us store secret blueprints for atom bombs on our PCs, we’ve still got information we’d rather keep away from prying eyes: the Excel spreadsheets we use to keep track of our finances, the Word documents that outline our plans for world domination, or the email evidence of our torrid love lives.
The most of peoples make blunder when the topic of a computer virus arises is to refer to a worm or Trojan horse as a virus. While the words Trojan, worm and virus are often used interchangeably, they are not the same. Viruses, worms and Trojan Horses are all malicious programs that can cause damage to your computer, but there are differences among the three, and knowing those differences can help you to better protect your computer from their often damaging effects.
Article Directory Home Computer And Technology Security PA

Can't find what you're looking for? Try Google Search!
(Search in 23 languages: English, Spanish, Japanese, Arabic, Italian, German,
Chinese Simplified, Chinese Traditional, Dutch, Korean, Portuguese, Russian, Greek,
Swedish, Romanian, Polish, Norwegian, Finnish, Danish, Czech, Croatian, Bulgarian)
 
 
Copyright © 2005 - by Larry Lim, Singapore - Article Search Engine Directory at ArticleSphere.com™
All Rights Reserved Worldwide. All Trademarks and Servicemarks are the property of the respective owners.
Template Design by Internet Marketing Singapore | Internet Marketing
Français Español 日本語 [أربيك] Italiano Deutsch 汉语 漢語 Nederlands 한국어 PortРусско
Ελληνικά Swedish Indo Romanian Polish Norwegian Hindi Finnish Danish Czech Croatian Bulgarian English - Original language