> The simplest of these, in terms of retrofitting existing systems that use > one of the constructions Ishikawa mentions, is > > H(password || H(password || known-string)) Which is very close to CRAM-MD5. That uses: H( (password XOR 0x5C) || H( (password XOR 0x36) || challenge-string)); Regards.
- Messenger/Hotmail passwords at risk gregory duchemin
- Re: Messenger/Hotmail passwords at risk aleph1
- Re: Messenger/Hotmail passwords at risk Peter van Dijk
- Re: Messenger/Hotmail passwords at risk Jeffrey W. Baker
- Re: Messenger/Hotmail passwords at risk Pavel Kankovsky
- Re: Messenger/Hotmail passwords at risk Gaurav Agarwal
- Re: Messenger/Hotmail passwords at risk Martin Macok
- Re: Messenger/Hotmail passwords at risk Ishikawa
- RE: Messenger/Hotmail passwords at risk Michael Wojcik
- Re: Messenger/Hotmail passwords at risk gregory duchemin