lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <520C3D18.9030802@vsecurity.com>
Date: Wed, 14 Aug 2013 19:29:44 -0700
From: "Timothy D. Morgan" <tmorgan@...curity.com>
To: full-disclosure@...ts.grok.org.uk
Subject: Introducing Bletchley

I've made an initial release of Bletchley, which is a collection of
cryptanalysis tools I've been working on for a while.  The focus of the project
is to make black-box detection and exploitation of common cryptography problems
easier.  Bletchley is still in the early stages of development and consists of
tools which provide:

* Automated token encoding detection (36 encoding variants)
* Passive ciphertext block length and repetition analysis
* Script generator for efficient automation of HTTP requests
* A flexible, multithreaded padding oracle attack library with CBC-R support

More info can be found here:
  https://code.google.com/p/bletchley/

I'd love to hear any feedback.

Also note, I am teaching a 2-day course on application cryptanalysis class at
AppSec USA that will rely heavily on Bletchley to implement realistic attacks in
a lab environment. Schedule and info here:
  http://sched.co/19n00R5


Thanks,
tim

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ