lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <CAGakQgiZY7DbV_X+O_BmWjP+G67POCFNfmvvw9=UvWWn-eyyww@mail.gmail.com>
Date: Mon, 2 Jan 2012 17:56:05 +0200
From: Jan van Niekerk <jvnkrk@...il.com>
To: ebhakt <ebhakt@...il.com>
Cc: webappsec@...urityfocus.com, secureshell@...urityfocus.com,
	forensics@...urityfocus.com, focus-virus@...urityfocus.com,
	Dailydave@...ts.immunitysec.com, focus-ids@...urityfocus.com,
	full-disclosure@...ts.grok.org.uk, bugtraq@...urityfocus.com,
	dailydave@...ts.immunityinc.com, nmap-hackers@...ecure.org,
	security-basics@...urityfocus.com, crypto@...urityfocus.com,
	yws-search-general@...oogroups.com
Subject: Re: captcha

On Sun, Jan 1, 2012 at 3:43 PM, ebhakt <ebhakt@...il.com> wrote:
> Hii guys,
Hii Ebhakt

> I want to know the logic behind creating a captcha imagey
> I know how the servers are designed and what the captcha security does!!
> but how the captcha imagae is generated
> that's my main question !!
The code that generates captcha imagey is top secret proprietary
software.  Only the top software engineers of the global captcha
security firms have access to the source code, and then only when each
one of them provides half of the security key to decode the system.
The code is never actually loaded in memory.  If this code ever got
into the wrong hands then the entire captcha security system would be
broken.
>
> Any ideas , guesses !!
Maybe do a dictionary attack.
> Just mail around !!
>
> Thanks
your welcome hopes this helps

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ