Tonimir Kisasondi: UNHash - Methods for better password cracking

Title:
Tonimir Kisasondi: UNHash - Methods for better password cracking
Description:

http://media.ccc.de/browse/congress/2014/31c3_-_5966_-_en_-_saal_1_-_201412292245_-_unhash_-_methods_for_better_password_cracking_-_tonimir_kisasondi.html

This talk will show a new method for password cracking called UNHash. UNHash as a tool uses rulefiles that are something in between of a DSL (Domain specific language) and a python script to describe the password cracking process. This talk will show how to mix web service abuse, knowledge of human nature and data mining to enable far better attacks against passwords. We will be focusing on a few features: cracking default passwords on network systems with minimal effort, testing for embedded backdoors and offline attacks by data mining and modeling about 33 million user account to gain insight in how users choose their passwords and how can we use that knowledge to speed up password cracking for 20% more gain for non pseudorandom passwords.

Tonimir Kisasondi

more » « less
Video Language:
English
Duration:
32:32
Format: Youtube Primary Original
Format: Youtube
This video is part of Amara Public.

Subtitles download

Incomplete subtitles (1)