Penetration Testing mailing list archives

Re: Rainbowtables for WPA PSK?


From: Marlon Jabbur <msjabbur () uol com br>
Date: Wed, 21 Dec 2005 10:27:51 -0200

As fas as I know the essid is used as a salt in the encryption of WPA PSK so 
it's not feasible to create the rainbow tables.

Regards,
Marlon

On Tuesday 20 December 2005 18:58, Jeroen wrote:
Without studying the ins and outs, I think it should be possible to
generate rainbowtables for WPA PSKs. Especially since on-the-fly cracking
takes quite some time per crypt and most users use a alphanumeric
characterset for the pass. It my assumption right? Anyone already working
on this subject? Please let me know!

Gz,
Jeroen


------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on your 
website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
futile against web application hacking. Check your website for vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before hackers do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: