Re: XOR passphrase with a constant
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


sci.crypt archive

Re: XOR passphrase with a constant

From: Andrew <anelless@gmail.com>
Date: Sat May 28 2005 - 14:48:15 CEST

Are you saying that prepending a constant string to the passphrase also
doesn't change the entropy or give any further advantage to an
attacker? (with common hashes like MD5 and SHA)

I have read up on the HMAC approach. The known string (or key if I used
the HMAC approach) will be known to the attacker... but there is a good
reason for it's use.
Received on Thu Sep 29 21:39:01 2005