Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

CryptoBuddy Predictable Encrypted Passphrase Weakness

It has been reported that the passphrase encryption algorithm employed by CryptoBuddy is weak. Specifically, the encryption algorithm used generates predictable ciphertext for specific sequences of characters used as a passphrase.

An attacker can exploit this weakness to build a dictionary of encrypted passphrases and use this to decrypt stolen files.







 

Privacy Statement
Copyright 2009, SecurityFocus