[Full-disclosure] password hash, funny myth in the industry!
full-disclosure at hushmail.com
full-disclosure at hushmail.com
Tue Oct 16 20:47:51 BST 2007
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Revolutionary wording!
On Tue, 16 Oct 2007 15:46:20 -0400 Thierry Zoller
<Thierry at Zoller.lu> wrote:
>BG> makes sense? :)
>Holds true for authentication shemes not designed to be protected
>against "Replay attacks".
>
>Challenge-Response - DH -
>
>--
>http://secdev.zoller.lu
>Thierry Zoller
>Fingerprint : 5D84 BFDC CD36 A951 2C45 2E57 28B3 75DD 0AC6 F1C7
>
>_______________________________________________
>Full-Disclosure - We believe in it.
>Charter: http://lists.grok.org.uk/full-disclosure-charter.html
>Hosted and sponsored by Secunia - http://secunia.com/
-----BEGIN PGP SIGNATURE-----
Note: This signature can be verified at https://www.hushtools.com/verify
Charset: UTF8
Version: Hush 2.5
wpwEAQECAAYFAkcVFWcACgkQ+dWaEhErNvS3LgP/UkYt5O1VFU4D95R26/ysQwP6RIT8
TagOd4DCYX4TlDRTiZ3E9pMsYjvSpLMfzFQ2LazeFJX5YzgDWojicMquntOeFZhsa7CW
ii4DqvsrsBqkbAspLREChXP4EhgSTu96jpvZyawV8FFXrrzqVRouSAPg/Jhk98sbXtW9
Qj8DVsM=
=Uihi
-----END PGP SIGNATURE-----
Full-Disclosure is hosted and sponsored by Secunia.