Search Results
|
Post |
Author |
Forum
[desc]
|
Replies |
Views |
Posted |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
[Disclosure: I work for AgileBits, the makers of 1Password]
This design flaw is certainly real, and is one of the many reasons why we have started migrating to a new design. In short, when the Agil... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 05:28 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
I don't have a lot of experience reading hashcat output, could someone confirm that
Code:
--
Speed.GPU.#1...: 744.0k/s
Speed.GPU.#2...: 744.0k/s
Speed.GPU.#3...: 743.9k/s
Speed.GPU.#4...: 743... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 06:03 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
jpgoldberg Wrote: (04-16-2013, 05:28 PM)
--
This design flaw is certainly real, [...]
--
I don't want to quibble about the meaning of the word "flaw", so I'll try to summarize the key points in my ... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 06:24 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
I'm guessing that my earlier statements about John the Ripper crack rates was off by 100. I took "c/s" to mean "cracks per second" (I couldn't figure out what "c" was), but I'm guessing now that that ... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 08:12 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
epixoip Wrote: (04-16-2013, 10:45 PM)
--
a lot of the sha1 optimizations do not apply for hmac-sha1. the remarkable speeds come from cutting the total number of transforms required by 75%. defenders ... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 11:06 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
atom Wrote: (04-16-2013, 04:46 PM)
--
The PBKDF2-HMAC-SHA1 part is what makes the entire calculation slow. For each iteration of PBKDF2-HMAC-SHA1 you call 4 times the SHA1 transform. But this is only... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-17-2013, 05:41 AM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
atom Wrote: (04-16-2013, 06:40 PM)
--
The speed is not 3.000 keys per second. It's 3.000.000 keys per second.
--
I guess congratulations are in order, but I hope you under stand that I was really rea... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 06:48 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
jpgoldberg Wrote: (04-16-2013, 06:24 PM)
--
I don't want to quibble about the meaning of the word "flaw",
--
With the help of time and discussions on Twitter, I see that yes there is a design flaw in... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-16-2013, 09:58 PM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
quinndupont Wrote: (04-17-2013, 12:09 AM)
--
If I have the math right (and damn, I probably don't), we're still looking at 10^27 years of cracking to exhaust the combinatoric space, right?
--
Remembe... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-17-2013, 02:44 AM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
epixoip Wrote: (04-16-2013, 11:12 PM)
--
no, that's only half the issue.
--
Right.
I'm sorry if I'm being dense. I see "half" of the issue being a general PBKDF2 issue that isn't specific to the A... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-17-2013, 02:53 AM |
|
|
Thread: Agilebits 1Password support and Design Flaw?
Post: RE: Agilebits 1Password support and Design Flaw?
Blog post on this on the AgileBits blog.
And let me thank everyone here for your help in helping me clear up my own misunderstandings.
https://blog.agilebits.com/2013/04/16/1password-hashcat-st... |
|
jpgoldberg |
Very old oclHashcat-plus Support
|
44 |
362,001 |
04-18-2013, 01:24 AM |