lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Date: Wed, 27 Aug 2014 18:46:17 -0400
From: Bill Cox <waywardgeek@...hershed.org>
To: discussions@...sword-hashing.net
Subject: Candidates that advance the state of the art

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I have not had the time to carefully review all the algorithms, and
when I do, surely this list will change.  Basically, if an algorithm
does a worse job than Scrypt at protecting against brute-force
guessing attacks by an ASIC attacker, I left it off the list, unless
there was some other angle where the algorithm is dramatically
different and potentially useful.

So... here's my list of algorithms I really enjoyed reading, and which
I feel are solid improvements over what I know about the prior art
(not a lot!)

Bcrypt-style unpredictable w/ GPU defense:
- ------------------------------------------

Battcrypt
Pufferfish
Yescrypt

Catena style cache-bound with timing attack resistance
- -------------------------------------------------------
Catena
Gambit

Scrypt style large memory algorithms with cache-miss penalty mitigation
- -----------------------------------------------------------------------
Lyra
TwoCats
Yescrypt

Other
- -----
EARWORM
Makwa
Parallela
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=V3fn
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists