Dr. Samuel Wein · @samweingamgee
185 followers · 1275 posts · Server fediscience.org

@est
Anyways, I guess we should all use export-grade since I can call all those named into existence in about 45 minutes, and anyway there are still several a trillion keys in 40 bit space, that's still like 100 keys per person.

#defcon #RC4 #cryptography

Last updated 1 year ago

Dr. Samuel Wein · @samweingamgee
116 followers · 466 posts · Server fediscience.org

Long story short, while there is an entire genre of papers on RC4 vulnerabilities (see Wikipedia's rc4 article for a good starting point), most of these revolve around key reuse, something that I didn't have here. I was able to find a long abandoned open source project to use CUDA to parallelize cracking RC4 github.com/morningForever/rc4_

#hacking #cryptography #RC4

Last updated 2 years ago

Fabian Bader · @fabian_bader
803 followers · 261 posts · Server infosec.exchange

If you didn't apply the out of band december patch, the offical fix for the issue is now included in all patches.

#RC4 #patchtuesday #kerberos #fix #oob

Last updated 2 years ago

Paul Rascagneres · @r00tbsd
940 followers · 150 posts · Server infosec.exchange

Don't feel stupid because you something by accident. It happens to everybody. I reversed or or by accident thinking it was something interesting... And after 1h I felt so stupid. But the positive aspect is you will recognize it immediately next time 😂

#reverse #base64 #RC4 #cobaltstrike

Last updated 2 years ago

Georg311 · @Georg311
16 followers · 47 posts · Server infosec.exchange

@matthegap with this Update they moved from rc4 as default to aes (which is great) but they somehow borked kerberos pre-auth (still using rc4) which lead to mcuh stuff breaking and the Patch for Domain Controllers

More on the change here:
support.microsoft.com/en-us/to

#hotfix #RC4

Last updated 2 years ago

Georg311 · @Georg311
16 followers · 47 posts · Server infosec.exchange
Georg311 · @Georg311
11 followers · 32 posts · Server infosec.exchange
Georg311 · @Georg311
6 followers · 25 posts · Server infosec.exchange
Fabian Bader :verified: · @fabian_bader
344 followers · 74 posts · Server infosec.exchange

Updated guidelines for
How to manage the Kerberos protocol changes related to CVE-2022-37966

ApplyDefaultDomainPolicy is the official workaround.

support.microsoft.com/en-us/to

#KB5021131 #kerberos #RC4 #aes

Last updated 2 years ago

Ignoring the conspiracy-myth ramblings surrounding it, I've always enjoyed writing a [CipherSaber](ciphersaber.gurus.org/). But, from a practical PoV, is getting a bit long in the tooth, even for a toy. I personally think is *almost* as simple to code from memory (I'm clearly not a good point of reference; I code crypto for fun, after all). Do others here agree? Do you have better suggestions? Would it be worth to write up a "CS3" page (sans the rambling, obviously)?

#RC4 #chacha20

Last updated 2 years ago

Fabian Bader · @fabian_bader
592 followers · 122 posts · Server infosec.exchange
Fabian Bader · @fabian_bader
592 followers · 122 posts · Server infosec.exchange

Waiting for the updated November patches...

#patchtuesday #kerberos #aes #RC4 #rc4disaster

Last updated 2 years ago

Fabian Bader · @fabian_bader
592 followers · 122 posts · Server infosec.exchange

I don't know what type of query language this is, but it's not LDAP. (CVE-2022-37967)

If you want to check which accounts allow RC4 usage in your domain use my script.

gist.github.com/f-bader/9f54cc

#powershell #patchtuesday #KB5020805 #kerberos #RC4 #CVE202237967

Last updated 2 years ago

Stéphane Bortzmeyer · @bortzmeyer
6407 followers · 75263 posts · Server mastodon.gougere.fr

RFC 8758: Deprecating RC4 in Secure Shell (SSH)

L'algorithme de chiffrement symétrique , trop fragile, est abandonné depuis longtemps. Ce nouveau le retire officiellement de .

bortzmeyer.org/8758.html

#RC4 #rfc #ssh

Last updated 5 years ago