- Blog
- Profile
- Homepage
-
Solar Designer on SunMD5 and MD5Crypt
Chance to play with Storify: [View the story “Solar Designer on SunMD5 and MD5Crypt” on Storify]
-
MD5crypt Password Hashing Algorithm is no longer considered safe by author /ht @bsdphk
Can’t seem to get away from password security this week – Poul-Henning Kamp got in touch via Twitter: @alecmuffett In re password scramblers, you may find this bit of history interesting: phk.freebsd.dk/sagas/md5crypt… — Poul-Henning Kamp (@bsdphk) November 21, 2012 – and lo, he is correct. Use of MD5crypt to hash passwords should now be considered…
-
Regrettably @Mat Honan is Entirely Wrong about “Killing Passwords” /cc @Wired
I’ve read Mat’s article and I know where he’s coming from. Mat’s article does make some sense – and his story is near tragic: This summer, hackers destroyed my entire digital life in the span of an hour. My Apple, Twitter, and Gmail passwords were all robust—seven, 10, and 19 characters, respectively, all alphanumeric, some…
-
A note from Solar Designer (@solardiz) re: SunMD5
While we’re touching on SunMD5, I recently received this from Solar – he of John the Ripper fame: I actually thought of you recently – when we finally had to crack SunMD5 hashes in the recent contest, and then when JimF on our team (after the contest, unfortunately) produced a SIMD implementation of SunMD5 for…
-
Hacker Faces Jail for Accessing Public URLs That Revealed AT&T iPad User Emails w/ Possible Chilling Effects for Online Freedom | MIT Technology Review
Auernheimer, whose pugnacious online persona is Weev, is up on two counts, each with the potential to land him with five years in jail. One alleges that by being in possession of the e-mails from AT&T’s leaky system he handled “identification information” in breach of a law intended to protect against identity theft, USC 1028.…
-
Regulators, Password Hashing & Crypto considered as a Branding Exercise: #bcrypt #security /cc @schneierblog @glynwintle
Pardon the rambling, mildly-edited nature of this, but: earlier this year, Whit Diffie mailed me and asked: What is your view of BCrypt and how does it relate to the algorithm you did for Sun? I can’t recall whether yours was earlier or later, so I don’t know whether to ask why you didn’t use…
-
I have several friends to whom this would apply … #caturday
Mostly, but not exclusively, female. And the cats.
-
The @NYTOnIt account is hilarious. Shame the Times can’t take a joke | Jeff Jarvis #dearieme
But Kabak made the apparent mistake of using an Old English “T” in the mock logo for his mock account, which he clearly labeled as mockery. So The Times claimed trademark violation and went whining to Twitter, which promptly suspended @NYTOnit, unleashing a flood of further mockery on Twitter, leading, after a long night, to…
-
Why The Hell Did No-one Tell Me About SequelPro Two Months Ago ?
THIS:
-
Somehow I just made the most extraordinary hot chocolate…
…the kind that you dunk churros in, except better than that because that’s thickened with cornflour whereas this is cocoa solids. some people might not like that statement, but they don’t know what they are missing. approximate recipe: about 5 or 6 pieces of hasslacher’s hot chocolate – way more than the written recipe calls…
-
Install VNC to provide a graphical front-end to Ubuntu Server – Precise, Lucid, Karmic, Jaunty and Intrepid
Useful Administer Ubuntu Server 12.04 using VNC via Install VNC to provide a graphical front-end to Ubuntu Server – Precise, Lucid, Karmic, Jaunty and Intrepid.
-
The Almost-Complete Mercury Music Prize Awards 1992-2012, as Spotify Playlists
I need to listen to more music – so as a project / proxy for doing actual research I decided to create playlists of the recent Mercury Music Prize winners with a little help from Wikipedia… and then decided to finish the job having started it. Albums which I could not find are annotated and…