返回   华枫论坛 > ◆ 工作学习◆ > IT交流



发表新主题 回复
 
只看楼主 主题工具
旧 Mar 5th, 2008, 13:16     #1
杜撰
他来自江湖
级别:21 | 在线时长:545小时 | 升级还需:27小时级别:21 | 在线时长:545小时 | 升级还需:27小时级别:21 | 在线时长:545小时 | 升级还需:27小时级别:21 | 在线时长:545小时 | 升级还需:27小时级别:21 | 在线时长:545小时 | 升级还需:27小时
 
杜撰 的头像
 
注册日期: Jul 2005
帖子: 4,044
杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute杜撰 has a reputation beyond repute
默认 密码的安全性有多高?

不是挨踢人士,有个问题一直不懂,就是咱们的密码究竟有多安全?

闲来无事整理收藏夹,突然意识到自己有注册账号的网站数目还不小,大约40-50来个吧,常去的10来个。统计了一下,各种不同的用户名大约3-4个,密码也是3-4个。也就是说,本人在好多网站的用户名跟密码是一抹一样的。就算是用户名不一样,密码也是一样的。

这么一想,背后有些冷汗。。。

请问各位挨踢大虾,这其中会有哪个网站管理员能、会察看自己网站注册用户的密码吗?

有事您说话, 没事偷着乐。
网络电视,用UUSEE哈。。。
杜撰 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 13:24   只看该作者   #2
wshsj0413
Senior Member
级别:30 | 在线时长:1024小时 | 升级还需:61小时级别:30 | 在线时长:1024小时 | 升级还需:61小时
 
注册日期: Nov 2006
帖子: 1,078
声望: 1193771
wshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond reputewshsj0413 has a reputation beyond repute
默认

最起码密码也是md5存放的把,没见过明文的。至于md5的安全性如何,google一下吧

引用:
作者: b777lr 查看帖子
靠,俺是写操作系统和编译器之类东西的,那东西可不是IT
wshsj0413 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:02   只看该作者   #3
老总
Senior Member
级别:41 | 在线时长:1866小时 | 升级还需:66小时级别:41 | 在线时长:1866小时 | 升级还需:66小时级别:41 | 在线时长:1866小时 | 升级还需:66小时级别:41 | 在线时长:1866小时 | 升级还需:66小时级别:41 | 在线时长:1866小时 | 升级还需:66小时
 
老总 的头像
 
注册日期: Nov 2005
帖子: 30,000
积分:30
精华:14
声望: 45724705
老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute老总 has a reputation beyond repute
默认

An MD5 hash is typically expressed as a sequence of 32 hexadecimal digits


----------------------------------------------------------------------------------------------------------
引用:
作者: b777lr 查看帖子
靠,俺是写操作系统和编译器之类东西的,那东西可不是IT
老总 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:07   只看该作者   #4
hardywang
在青麦地上跑着 / 雪和太阳的光芒
级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时级别:97 | 在线时长:9894小时 | 升级还需:102小时
 
hardywang 的头像
 
注册日期: Jul 2004
住址: Kilimanjaro
帖子: 9,428
积分:24
精华:16
声望: 7498223
hardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond reputehardywang has a reputation beyond repute
发送 ICQ 消息给 hardywang
默认

MD5 被证明存在 collision 了。
帅哥 hardywang 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:11   只看该作者   #5
b777lr
Senior Member
级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时
 
注册日期: Nov 2005
帖子: 1,995
声望: 717499
b777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond repute
默认

放心好了,说话的这些人,都是解不出来的。

破译方法,俺就不说了。
b777lr 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:24   只看该作者   #6
b777lr
Senior Member
级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时
 
注册日期: Nov 2005
帖子: 1,995
声望: 717499
b777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond repute
默认

俺这么说吧,破译并不需要解码知识,如果系统员知道,破解不费劲。

如果不知道的话,呵呵,反正不是从解码开始
b777lr 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:49   只看该作者   #7
gas_tank
换热水炉租金不变
级别:9 | 在线时长:121小时 | 升级还需:19小时级别:9 | 在线时长:121小时 | 升级还需:19小时级别:9 | 在线时长:121小时 | 升级还需:19小时级别:9 | 在线时长:121小时 | 升级还需:19小时级别:9 | 在线时长:121小时 | 升级还需:19小时
 
gas_tank 的头像
 
注册日期: Sep 2006
帖子: 362
声望: 19968
gas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond reputegas_tank has a reputation beyond repute
默认

有一种方法,找个抓包的软件/硬件,把数据分析一下就有了。什么USER= .... PASSWD=.... 嘿嘿
帅哥 gas_tank 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 14:51   只看该作者   #8
1newcomer
Senior Member
级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时级别:24 | 在线时长:718小时 | 升级还需:7小时
 
1newcomer 的头像
 
注册日期: May 2006
帖子: 1,752
声望: 2434509
1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute1newcomer has a reputation beyond repute
默认

建议使用KeePass,管理所有的网络账号密码

KeePass完全免费,开放原码软件,采用高强度加密算法

支持多种操作系统,windows, linux, mac, ppc, u3

我最常用的就是U3版了,放在Sandisk的U盘上,随身携带,非常方便,比ppc版还要好使,

当然,如果不支持U3的U盘也可用KeePass,那本来就是绿色版

http://keepass.info/
1newcomer 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 15:12   只看该作者   #9
b777lr
Senior Member
级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时
 
注册日期: Nov 2005
帖子: 1,995
声望: 717499
b777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond repute
默认

你们没搞清楚,他说的是密码在管理员那里,被破的可能性。然后管理员拿那个,去登陆他别的东西的账号。

这个不是KeePass所能解决的,当然一个账号一个密码也是一种办法,那样被破了也就损失一个。

反正,你最关键东西的密码,如银行,报税账户,paypal,等等,不要和其他的账户一样。
b777lr 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 15:17   只看该作者   #10
b777lr
Senior Member
级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时级别:15 | 在线时长:314小时 | 升级还需:6小时
 
注册日期: Nov 2005
帖子: 1,995
声望: 717499
b777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond reputeb777lr has a reputation beyond repute
默认

引用:
作者: gas_tank 查看帖子
有一种方法,找个抓包的软件/硬件,把数据分析一下就有了。什么USER= .... PASSWD=.... 嘿嘿
unix所有账户的密码和用户名,是在一个文件里,当然是加密的。但以前这个文件,一般用户有读权,这曾经是个大漏洞。。。。。。

破解的例子,层出不穷,并不只是和管理员有关。
b777lr 当前离线  
回复时引用此帖
旧 Mar 5th, 2008, 17:55   只看该作者   #11
sane0898
大罗0898
级别:25 | 在线时长:733小时 | 升级还需:47小时
 
sane0898 的头像
 
注册日期: Jul 2004
帖子: 1,896
声望: 349020
sane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond reputesane0898 has a reputation beyond repute
默认

推荐一个自动生成密码的网址:

http://www.tool.la/MakePassWord/
帅哥 sane0898 当前离线  
回复时引用此帖
发表新主题 回复


发帖规则
不可以发表新主题
不可以发表回复
不可以上传附件
不可以编辑自己的帖子

启用 BB 代码
论坛启用 表情符号
论坛启用 [IMG] 代码
论坛禁用 HTML 代码



所有时间均为格林尼治时间 -4。现在的时间是 00:41

请尊重文章原创者,转帖请注明来源及原作者。
凡是本站用户自行发布的任何信息,皆不代表本站的立场,
华枫网站不确保各类信息的正确性和可靠性,也不承担由此而导致的任何直接或间接损失以及任何法律责任。

Copyright © 1999-2024 Chinasmile