Free Republic 3rd Qtr 2025 Fundraising Target: $81,000 Receipts & Pledges to-date: $23,054
28%  
Woo hoo!! And we're now over 28%!! Thank you all very much!! God bless.

Keyword: dumbsecurity

Brevity: Headers | « Text »
  • Microsoft RC4 Flaw

    02/25/2005 8:19:19 PM PST · by zeugma · 51 replies · 1,414+ views
    Crypto-Gram ^ | 02.15.2005 | Bruce Schneier
    Microsoft RC4 Flaw One of the most important rules of stream ciphers is to never use the same keystream to encrypt two different documents. If someone does, you can break the encryption by XORing the two ciphertext streams together. The keystream drops out, and you end up with plaintext XORed with plaintext -- and you can easily recover the two plaintexts using letter frequency analysis and other basic techniques. It's an amateur crypto mistake. The easy way to prevent this attack is to use a unique initialization vector (IV) in addition to the key whenever you encrypt a document. Microsoft...