Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: null and void
If I understand what you are saying, in order to get every possible input that would result in any 20 byte hash, you would need 1e27 bytes.

That was just to store the hashes produced by going through all of the possible 13-character printable ASCII passwords (to cite one example — there are also all the 14-character passwords and all the 15-character passwords, etc. — better order more drives).

The number of distinct 20-byte hashes is 2**160, or approximately 1.46e48, a far higher number.

The number of 13-byte printable ASCII passwords is 95**13, or about 5e25. There are 2.85e22 times as many possible 20 byte hashes as there are 13-byte printable ASCII passwords.

This is not to say there are no collisions (more than one 13-byte password producing the same 20-byte hash), but it should be extremely unlikely.

Unless there is an undiscovered flaw in the SHA1 algorithm, which would reduce the password search space substantially. That's always possible.

But the larger point is, it doesn't make sense for the government to be going after passwords when they have inside access to the providers and the carriers.

144 posted on 07/25/2013 8:32:22 PM PDT by cynwoody
[ Post Reply | Private Reply | To 137 | View Replies ]


To: cynwoody; zeugma
In the post above yours zeugma says the length of the output is constant, regardless of the length of the input.

Therefore you don't need to test every possible 13 character, 14 character, 15 character, 16 character, full length of War and Peace character input.

That being said, I did miscalculate the data requirements by a wee little bit.

And that being said, human remember-able passwords are a much smaller set of all possible passwords. I'd bet that even now fewer than a thousand words make up 80% of them (with "password" being #1)...

152 posted on 07/25/2013 9:16:56 PM PDT by null and void (You don't know what "cutting edge" means till you insult Mohammed.)
[ Post Reply | Private Reply | To 144 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson