RE: Steganography

From: Harvey Newstrom (mail@HarveyNewstrom.com)
Date: Thu Sep 27 2001 - 14:50:30 MDT


hal@finney.org wrote,
> Louis Newstrom writes:
> > This is incorrect. A recent incident proved this. A
> government official
> > published a message in one of their "unbreakable" codes, and
> challenged the
> > hacker community to break it. Someone did only a few weeks later.

> I'm not familiar with this case, although it bears some similarity to
> various incidents that I've heard of. I don't know of a government
> challenge to break a code which was broken a few weeks later.

I don't know about this specific case, but this scenario has been repeated
so many times I don't know why people keep trying. Brute-force has been
used to crack "uncrackable" codes by combining thousands of Internet
computers over and over again. The distributed.net network is running close
to 200Gigakeys per second!

Nothing is uncrackable these days, even with brute-force. Encryption is a
temporary solution at best. We must assume that at some date in the future
supercomputers or networks of computers will scan all Dejanews/Google
archives and decrypt all stored messages in the history of the Internet. No
one should send anything encrypted over the Internet that you don't want
read publicly in the future.

RC5 48bit Challenge, February 1997: (cracked in 13 days)
<http://gilchrist.ca/jeff/distrib-rc548.html>

DES Challenge, June 1997: (cracked in 20 days)
<http://gilchrist.ca/jeff/distrib-des.html>

RC5 56bit Challenge, October 1997: (cracked in 51 days)
<http://gilchrist.ca/jeff/distrib-rc556.html>

DES Challenge II-1, February 1998: (cracked in 41 days)
<http://gilchrist.ca/jeff/distrib-des2.html>

ECC P97 Challenge, March 1998: (cracked in 53 days)
<http://gilchrist.ca/jeff/distrib-eccp97.html>

DES Challenge II-2, July 1998: (cracked in 56 hours)
<http://gilchrist.ca/jeff/distrib-des2-2.html>

DES Challenge III, January 1999: (cracked in 29 hours)
<http://gilchrist.ca/jeff/distrib-des3.html>

EC2 97 Challenge, September 1999: (cracked in 40 days)
<http://gilchrist.ca/jeff/distrib-ecc297.html>

The attempt to brute-force crack RC5 64-bit is currently underway:
<http://gilchrist.ca/jeff/distrib-rc564.html>

About a dozen other brute-force cracking contests can be reviewed at:
<http://members.aol.com/jpeschel/contests.htm>

--
Harvey Newstrom <www.HarveyNewstrom.com>
Principal Security Consultant, Newstaff Inc. <www.Newstaff.com>
Board of Directors, Extropy Institute <www.Extropy.org>
Cofounder, Pro-Act <www.ProgressAction.org>



This archive was generated by hypermail 2b30 : Fri Oct 12 2001 - 14:40:58 MDT