P@ssword Making & Breaking — by Will Hunt

#IICSG2019 Conference Fix It Track

Day 2 (20 Jun 2019)


@ Breakout Room 2


We all understand the importance of password security. We’ve all been told to use all the character sets, adhere to a minimum length and not to reuse our passwords. Recent guidance from NIST now promotes the importance of length over complexity, but are we getting more efficient and secure in our selections for the keys to our kingdoms?

After a quick recap of traditional cracking techniques, I'll discuss more creative and advanced attack methods that start to break recent password guidance, as well as attack passwords that traditional rules aren't effective against. I'll then move onto GPU limitations with a crypto-wallet example, using hex to crack foreign passwords and wrap up with some advice for securing yourself moving forwards.

