Passwords and salts

Kevin Montgomery kmont at hpindda.HP.COM
Fri Jan 12 09:28:41 AEST 1990


|>Just as a test, he wanted to find all the users whose passwords were
|>the same as their login names. He "cracked" about 35 passwords on the
|>first pass, including about 25 faculty accounts ...

even more, it's not that imaginative!  Me old roomie used to break passwords
by selecting one, taking the crypt salt, then looking for matches of the
crypt of the salt and the user's login and a few other "usual" passwords and,
upon this not working, tried it on all the words on the online dictionary.

now THAT's classy...



More information about the Comp.unix.questions mailing list