Announcement

Collapse
No announcement yet.

NTLM vulnerability

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • NTLM vulnerability

    http://www.hexale.org/advisories/OCHOA-2010-0209.txt

    The challenge/nonce prediction attack is feasible due to several factors including that the protocol leaks information that can be used by an attacker to calculate the internal state of the PRNG used to generate challenges.
    Windows lets you do challenge/response auth and uses a PRNG to generate the challenge messages. Whaaaa? Alarm bells are kind of going off in my head there.
    45 5F E1 04 22 CA 29 C4 93 3F 95 05 2B 79 2A B0
    45 5F E1 04 22 CA 29 C4 93 3F 95 05 2B 79 2A B1
    [ redacted ]
Working...
X