• 综合
  • 标题
  • 关键词
  • 摘要
  • 学者
  • 期刊-刊名
  • 期刊-ISSN
  • 会议名称
搜索

作者:

Liu, Fanbao (Liu, Fanbao.) | Liu, Yi (Liu, Yi.) | Xie, Tao (Xie, Tao.) | Feng, Dengguo (Feng, Dengguo.) | Feng, Yumeng (Feng, Yumeng.)

收录:

EI Scopus SCIE

摘要:

In this paper, we improve the password recovery attack to Authentication Post Office Protocol (APOP) from two aspects. First, we propose new tunnels to control more fixed bits of MD5 collision, hence, we can recover passwords with more characters, for example, as long as 43 characters can be recovered practically. Second, we propose a group satisfaction scheme, apply divide-and-conquer strategy and a new suitable MD5 collision attack, to greatly reduce the computational complexity in collision searching with high number of chosen bits. We propose a fast password recovery attack to application APOP in local that can recover a password with 11 characters in > 1 min, recover a password with 31 characters extremely fast, about 6 min, and for 43 characters in practical time. These attacks truly simulate the practical password recovery attacks launched by malware in real life, and further confirm that the security of APOP is totally broken.

关键词:

APOP Challenge and response Group satisfaction scheme MD5 Password recovery

作者机构:

  • [ 1 ] [Liu, Fanbao]Natl Univ Def Technol, Sch Comp, Changsha 410073, Hunan, Peoples R China
  • [ 2 ] [Liu, Yi]Beijing Univ Technol, Sch Comp, Beijing 100124, Peoples R China
  • [ 3 ] [Feng, Yumeng]Beijing Univ Technol, Sch Comp, Beijing 100124, Peoples R China
  • [ 4 ] [Xie, Tao]Natl Univ Def Technol, Ctr Soft Comp & Cryptol, Changsha 410073, Hunan, Peoples R China
  • [ 5 ] [Feng, Dengguo]Chinese Acad Sci, State Key Lab Informat Secur, Beijing, Peoples R China

通讯作者信息:

  • [Liu, Fanbao]Natl Univ Def Technol, Sch Comp, Changsha 410073, Hunan, Peoples R China

电子邮件地址:

查看成果更多字段

相关关键词:

相关文章:

来源 :

JOURNAL OF INTELLIGENT MANUFACTURING

ISSN: 0956-5515

年份: 2014

期: 2

卷: 25

页码: 251-261

8 . 3 0 0

JCR@2022

ESI学科: ENGINEERING;

ESI高被引阀值:123

JCR分区:1

中科院分区:3

被引次数:

WoS核心集被引频次: 0

SCOPUS被引频次:

ESI高被引论文在榜: 0 展开所有

万方被引频次:

中文被引频次:

近30日浏览量: 2

归属院系:

在线人数/总访问数:490/2894659
地址:北京工业大学图书馆(北京市朝阳区平乐园100号 邮编:100124) 联系我们:010-67392185
版权所有:北京工业大学图书馆 站点建设与维护:北京爱琴海乐之技术有限公司