Harder, better, faster, stronger: Optimising the performance of context-based password cracking dictionaries. (March 2023)
- Record Type:
- Journal Article
- Title:
- Harder, better, faster, stronger: Optimising the performance of context-based password cracking dictionaries. (March 2023)
- Main Title:
- Harder, better, faster, stronger: Optimising the performance of context-based password cracking dictionaries
- Authors:
- Kanta, Aikaterini
Coisel, Iwen
Scanlon, Mark - Abstract:
- Abstract: Passwords have been the prevailing method of authentication since their inception more than 50 years ago, a trend which has no signs of slowing down in the foreseeable future. They are an integral part of the security of digital persons, systems and critical data, and yet, they often remain the weakest entry point to a digital system. A password itself is indeed an extension of its creator and therefore can be exploited by malicious actors leveraging available contextual information about a target password creator. Recent research has shown that bespoke password candidate lists, generated based on available contextual information, can positively impact the password cracking processes. This paper introduces an innovative methodology for composing a contextual wordlist and ranking the password candidates in order to maximise the chance of early success. The aim of the proposed approach is to support digital forensic investigators in their criminal investigation – especially when time is of the essence. This paper describes the implementation of this methodology and provides an overview of several experimental results demonstrating the advantages of this approach. These results demonstrate that by going through a harder, more rigorous password candidate selection process, better dictionaries can be generated that, in a faster timeframe, can crack stronger passwords.
- Is Part Of:
- Forensic science international. Volume 44(2023)Supplement
- Journal:
- Forensic science international
- Issue:
- Volume 44(2023)Supplement
- Issue Display:
- Volume 44, Issue 2023 (2023)
- Year:
- 2023
- Volume:
- 44
- Issue:
- 2023
- Issue Sort Value:
- 2023-0044-2023-0000
- Page Start:
- Page End:
- Publication Date:
- 2023-03
- Subjects:
- Dictionary -- Contextual information -- Password cracking -- Wordlist
- Journal URLs:
- http://www.sciencedirect.com/ ↗
- DOI:
- 10.1016/j.fsidi.2023.301507 ↗
- Languages:
- English
- ISSNs:
- 2666-2817
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 26861.xml