The password predictor—a training aid for raising security awareness

Despite warnings against it, students persist in using easy-to-guess passwords. This program, intended for use by UNIX system administrators, provides an object lesson. It attacks the one-way-encrypted password file and when it guesses a password, stores an encrypted warning message in the user'...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Computers & security 1988-10, Vol.7 (5), p.475-481
Hauptverfasser: Carroll, John M., Mowat, Robert B., Robbins, Lynda E., Wiseman, David
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Despite warnings against it, students persist in using easy-to-guess passwords. This program, intended for use by UNIX system administrators, provides an object lesson. It attacks the one-way-encrypted password file and when it guesses a password, stores an encrypted warning message in the user's area. The user's password is the crypto key. We also demonstrate the vulnerability of a UNIX system to massive password search using high speed computing resources.
ISSN:0167-4048
1872-6208
DOI:10.1016/0167-4048(88)90200-3