Search:  

 
theme to black backgroundlet page decide theme
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Steganos Safe 2007 / 2008 built-in password generator.
Search Topic:
Uniqs:
154
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
N/M »
« Most home routers 'vulnerable to remote take-over'  
AuthorAll Replies


waldovanlaeken

@belgacom.be

Steganos Safe 2007 / 2008 built-in password generator.

Hey !

I'm a user of Steganos Safe 2007 (not the Pro version with keyrecovery option). I don't trust this.

I do have questions about the built-in password generator they use.

If you make a new safe, you have the option to provide a password (i use 70 random characters) that is 280 binary-bits.

I know this is 6 charaters to much (for the 256-Bits AES) for maximum strength. But this is just a little safety margin.

You also get the option to safe a "keyfile" to a removable media for easy entry to the vault.

This keyfile is generated by steganos. So you get the option to open your safe with the password you provided, OR with the keyfile for easy entry.

my problem (question) is why is the password in the generated keyfile only 64-characters long (if you convert to .txt you can see it) if you have the option for manually type password up to 100 characters ??

So the weakness is Not always the password you type yourself, but could reside in the key-generator in steganos !

Wich algorithm do they use to derivate the keyfile ? (hash function).

do they ad random bits (salt) or truly random bits derivated on mouse movements ?? or something else...

There is NO information on this ?

Does somebody knows more about this program that is worldwide used ?

(Steganos support didn't answer me)

Thanks !
Forums » Up and Running » Security » SecurityN/M »
« Most home routers 'vulnerable to remote take-over'  


Sunday, 08-Nov 21:59:17 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [156] Cable Uncapper Faces Criminal Charges
· [140] AT&T Sues Verizon Over 3G Ads
· [112] Why Run Fiber When You Can Run Ads That Pretend You Do?
· [108] Comcast Is Simply Getting Huge
· [93] Apple Cooking Up New $30 A Month TV Service?
· [83] Bits Of ACTA Agreement Leaking Out
· [80] Will 'Three Strikes' Come To The United States?
· [78] Verizon To Double Smartphone ETFs?
· [77] Verizon: Droid Tethering Will Cost $30 Extra
· [73] Comcast, NBC Deal Almost Complete
Most people now reading
· My cat is reluctant to exercise. [General Questions]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· [WIN7] Which Services in Win 7 Have You Turned Off? [Microsoft Help]
· Hit and run [General Questions]
· for all the bell haters out there. [TekSavvy]
· [NFL] Week 9 Games Thread [Sports Chat]
· Bandwidth Limits/Congestion Management - All discussion here [Comcast HSI]
· [Rant] Brand New 'Jasper' Xbox360 - RRoD Hardware Failure [Rants, Raves, and Praise]
· [FS] Motherboard + CPU + Hard Drive + Servers + More! [For Sale/Wanted]