-
CSE543 - Introduction to Computer and Network Security Page
CSE543 - Introduction to Computer and Network Security Module: Authentication
Professor Trent Jaeger
1
1
CSE543 - Introduction to Computer and Network Security Module: - - PowerPoint PPT Presentation
CSE543 - Introduction to Computer and Network Security Page
1
1
CSE543 - Introduction to Computer and Network Security Page
2
2
CSE543 - Introduction to Computer and Network Security Page
3
3
CSE543 - Introduction to Computer and Network Security Page
4
4
CSE543 - Introduction to Computer and Network Security Page
5
5
CSE543 - Introduction to Computer and Network Security Page
6
6
CSE543 - Introduction to Computer and Network Security Page
7
7
CSE543 - Introduction to Computer and Network Security Page
8
8
CSE543 - Introduction to Computer and Network Security Page
9
9
CSE543 - Introduction to Computer and Network Security Page
understand English? You can't come in here unless you say, "Swordfish." Now I'll give you one more guess.
[Marx Brothers, Horse Feathers]
10
10
CSE543 - Introduction to Computer and Network Security Page
11
11
CSE543 - Introduction to Computer and Network Security Page
12
12
CSE543 - Introduction to Computer and Network Security Page
13
13
CSE543 - Introduction to Computer and Network Security Page
14
14
CSE543 - Introduction to Computer and Network Security Page
15
15
CSE543 - Introduction to Computer and Network Security Page
16
16
CSE543 - Introduction to Computer and Network Security Page
17
17
CSE543 - Introduction to Computer and Network Security Page
18
18
CSE543 - Introduction to Computer and Network Security Page
19
19
CSE543 - Introduction to Computer and Network Security Page
20
20
CSE543 - Introduction to Computer and Network Security Page
21
basic8survey basic8 blacklistEasy comprehensive8 basic16 blacklistMedium blacklistHard dictionary8 Percentage of passwords cracked Number of guesses (log scale) 70% 60% 50% 40% 30% 20% 10% 1E0 1E1 1E2 1E3 1E4 1E5 1E6 1E7 1E8 1E9 1E10 1E11 1E12 1E13
Figure 1. The number of passwords cracked vs. number of guesses, per condition, for experiment E. This experiment uses the Weir calculator and our most comprehensive training set, which combines our passwords with public data.
21
CSE543 - Introduction to Computer and Network Security Page
22
basic8 blacklistMedium basic16 comprehensive8 P3 P4 E
60% 50% 40% 30% 20% 10% 1E6 1E9 1E12 1E6 1E9 1E12 1E6 1E9 1E12 1E6 1E9 1E12
% of passwords cracked Number of guesses (log scale)
60% 50% 40% 30% 20% 10%
Figure 4. Showing how increasing training data by adding the Openwall list (P4) and then our collected passwords (E) affects cracking, for four example conditions. Adding training data proves more helpful for the group 1 conditions (top) than for the others (bottom). 22
CSE543 - Introduction to Computer and Network Security Page
23
23
CSE543 - Introduction to Computer and Network Security Page
24
24
CSE543 - Introduction to Computer and Network Security Page
25
25
CSE543 - Introduction to Computer and Network Security Page
26
26
CSE543 - Introduction to Computer and Network Security Page
27
27