Most Popular Stories
- 3 ways for CIOs to become business leaders
- Chrome 17's new features enhance speed, security
- FBI insists cloud providers meet strict security requirements
- Bug in Trendnet webcams exposes them to public viewing
- Multiple monitors makes some multitasking faster, easier
- Spotlight: Intel launches 520 Series solid-state drive
Events
- Northwestern University Master's in Information Systems
- COMPTEL PLUS Spring 2012
April 15-18 — San Francisco, CA - Customer Engagement Technology World
March 28-29, 2012 — San Francisco - Ready to meet the next-generation of business?
March 4-6 2012 — San Francisco, CA
Sponsored Links
Free Newsletter
HOT TOPICS >> The tech world's top flops and fiascos of 2011 | Top 8 features in Windows 8 | Paul's Q&As
INDUSTRY >> Healthcare IT | Government IT | Financial Services IT | Biotech IT | Compliance IT
Free Newsletter
Latest News
Popular Topics
Whitepapers
- Whitepaper: Integrated Analytics and WCM Can Improve Performance & ROI
- Virtual Game Changer
- Enterprise Portals: Harnessing Portal Power
- Five Tips to Get IT Auditors Off Your Back
- 5 Ways to Reduce Enterprise Mobililty Costs with Wireless Telecom Expense Management
- Reporting 2.0 – The next evolutionary step in web based business reporting
Amazon EC2 changes the rules of password cracking
How many characters should a reasonable secure password consist of? Well, it would be 12 characters at least, according to security consultant David Campbell. Campbell came to this conclusion after calculating the cost of a brute-force attack by harnessing computational resources from cloud computing services such as Amazon's EC2.
Using his own cracking application--that can handle 9.36 billion keys per hour, Campbell calculated that it would cost a cool $1.5M to brute force a password that is 12 characters long. Campbell is working based on the assumption that the password will consist of just lower-case letters. A similar password with just 11 characters though, will cost just $60,000 worth of computer cycles to crack.
Throwing numbers and other symbols in the mix will obviously increase the cost, though Campbell told The Register that a short (eight character) password containing an additional 32 different characters will cost just $106,000 to crack. So the longer the length, the better it is.
What is more chilling perhaps, is the idea that criminals could already have access to a super computer-level of computing resources by harnessing the power of cloud computing. But won't it be too costly for them? Well, not if they throw some good old fashioned crime into the technological mix.
Campbell summed up the situation. "Using stolen credit cards, they [hackers] could create a super computer that would be faster potentially than what the three-letter agencies have and they wouldn't be paying for the CPU cycles."
For more on this story:
- check out this article at The Register
Related Articles:
53 indicted in massive phishing plot
Are you worried about growing cybercrime?
IT security tops budget as priority
Malware spike observed in 2008
Cybercrime targets small businesses
Related Stories
- ALSO NOTED: HP, Cisco team up for enterprise WLANs; Calif. law may require WiFi safety; and much more...
- Kindle Fire emerges as the most used Android tablet
- Amazon Kindle Fire to receive software update soon
- Rumor: Amazon prepping 8.9-inch Kindle Fire
- Nasdaq attackers installed monitoring software to spy on 'scores' of directors
- Amazon unveils Kindle Fire tablet at $199
- Amazon Silk web browser raises privacy concerns
- Citigroup reports another data breach
- Wi-Fi hacker gets 18 years, highlights danger of unsecured networks
- Mouse modified to hack into PC when plugged in
Home
| Subscribe | Advertise | RSS |
Privacy
| Site Map
| EditorsTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |




