Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20110620082324.GA30181@openwall.com>
Date: Mon, 20 Jun 2011 12:23:24 +0400
From: Solar Designer <solar@...nwall.com>
To: john-dev@...ts.openwall.com
Subject: Re: Either my test script is b0rken or BF has an 8-bit bug

On Mon, Jun 20, 2011 at 10:19:58AM +0200, Frank Dittrich wrote:
> There are (or were) other incorrect hashes in the wild as well, see
> http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00005.html

Yes, I now recall seeing this.

> Gawker used this broken implementation, which replaced all
> non-ascii characters with question marks prior to hashing.

I didn't know this.

Anyhow, I brought the topic up on oss-security:

http://www.openwall.com/lists/oss-security/2011/06/20/2

Thanks,

Alexander

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.