Publication Details

Experimental Evaluation of Password Recovery in Encrypted Documents

HRANICKÝ Radek, MATOUŠEK Petr, RYŠAVÝ Ondřej and VESELÝ Vladimír. Experimental Evaluation of Password Recovery in Encrypted Documents. In: Proceedings of ICISSP 2016. Roma: SciTePress - Science and Technology Publications, 2016, pp. 299-306. ISBN 978-989-758-167-0. Available from: http://www.scitepress.org/DigitalLibrary/PublicationsDetail.aspx?ID=Dly3xWiSKbs=&t=1
Czech title
Experimentální vyhodnocení nástrojů pro obnovu hesel u šifrovaných dokumentů
Type
conference paper
Language
english
Authors
URL
Keywords

Password Recovery, Privacy, Digital Forensics, Encrypted Documents

Abstract

Many document formats and archiving tools (PDF, DOC, ZIP) support encryption to protect privacy of the sensitive contents. The encryption is based on common cryptography algorithms as AES, SHA, RC4. For forensic purposes, investigators are often challenged to analyze these encrypted documents. The task of password recovery can be solved by exhaustive state space search using dictionaries or password generators augmented with heuristic rules to speed up the recovery. In our experimental study, we focus on the password recovery of popular document and archiving formats using parallel computation on common hardware with multicore CPUs or accelerated with GPU processors. We show how recovery time can be estimated based on alphabet, maximal password length and performance of given hardware. Our results are demonstrated on Wrathion, a tool developed by our research team.

Published
2016
Pages
299-306
Proceedings
Proceedings of ICISSP 2016
Conference
2nd International Conference on Information Systems Security and Privacy, Roma, IT
ISBN
978-989-758-167-0
Publisher
SciTePress - Science and Technology Publications
Place
Roma, IT
DOI
EID Scopus
BibTeX
@INPROCEEDINGS{FITPUB11052,
   author = "Radek Hranick\'{y} and Petr Matou\v{s}ek and Ond\v{r}ej Ry\v{s}av\'{y} and Vladim\'{i}r Vesel\'{y}",
   title = "Experimental Evaluation of Password Recovery in Encrypted Documents",
   pages = "299--306",
   booktitle = "Proceedings of ICISSP 2016",
   year = 2016,
   location = "Roma, IT",
   publisher = "SciTePress - Science and Technology Publications",
   ISBN = "978-989-758-167-0",
   doi = "10.5220/0005685802990306",
   language = "english",
   url = "https://www.fit.vut.cz/research/publication/11052"
}
Files
Back to top