Cronwerks MCCode/MCCodes Forums

Please login or register.

Login with username, password and session length

News:

Have you purchased a mod and lost your copy? Just file a support ticket through your "My Mods" page.


This forum is now closed and has moved to a new location! Click here to find out why.

Poll

What type of encryption

MD5
SHA1
SHA1 encrypted with username
Other, ive posted it in the topic
Pages: 1 [2] 3

AuthorTopic: Password Security  (Read 2413 times)

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #15 on: February 14, 2010, 01:32:56 AM »
My apologies if i offended you Spudinski, FBI, google what are you going on about... The findings of my post where from php.net which i think is where you should visit alot more.

Quote
I've had it until here whit you Crim to be real honest with you, I don't see the point in arguing with someone with such minimal knowledge of security.
Minimal knowledge of security? Yet i knew md5 was slower and whirlpool is a better string not just "longer", Obviously you can't take criticism by me is unbelievable im only one man who you consider having minimal knowledge yet you locked the post in anger.

Show me my lack of knowledge with security ("it's just a longer string" <=that's you with the noobiest statement of the entire forum, i suggest you admit you was wrong or get over yourself, like cronus said this is a discussion and i am allowed my opinion specially when i provide proof)

If your a master you prove to me it's just a longer string (don't just post a sha512 and a whirlpool string) since you said "it's basically just a longer string" originally so i'd like to see your facts behind that statement or admit you were wrong and stop acting like a child.

We all are wrong sometimes.

Please call me zero i don't like being called crim (it's my domain name)
« Last Edit: February 14, 2010, 01:35:10 AM by CrimGame.com »
Logged

Spudinski

  • Basic Member
  • *
  • Reputation Power: 42
  • Spudinski has no influence.
  • Offline Offline
  • Posts: 53
  • I have cookies!
    • View Profile
    • WWW
    • Email
Re: Password Security
« Reply #16 on: February 14, 2010, 04:21:12 AM »
Firstly, I locked the topic out of disappointment, I can't believe that someone like you, zero, would continue to rant on about something as stupid as encryption times.

I'm stopping my side of the rant right here, the time I took to do this, I could have done something life changing.
Logged
If you see a post that just doesn't just seem right, send me a PM.
Offering services for small-type games and websites, send me a PM if you want/need something done.

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #17 on: February 14, 2010, 07:26:51 AM »
I'm not going on a rant i just don't like when people who are administration plainly give out false information. I have apologised already once but again i will apologise my actions were a bit over zealous but you are plainly wrong.

Why not admit it?

Quote
I don't see the point in arguing with someone with such minimal knowledge of security.
Is insulting specially when i provided evidence to backup what i said you plainly have just locked the topic and not even tried to correct your mistake or backup that it's the truth (it isn't you were wrong). It's in no way "just a longer string" just admit it, you was wrong.

Shawk

  • Basic Member
  • *
  • Reputation Power: 0
  • Shawk has no influence.
  • Offline Offline
  • Posts: 1
    • View Profile
    • Email
Re: Password Security
« Reply #18 on: February 15, 2010, 02:19:49 PM »
Instead of arguing or whatever, take it to PM. All that apologising, can be done in PM. I logged on, not expecting to see an argument take place over something so petty.
Logged

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #19 on: February 15, 2010, 02:47:20 PM »
amazing first post... It was over till you replied... im still waiting on your admission Spud

Danny696

  • Senior Member
  • ****
  • Reputation Power: 317
  • Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.
  • Offline Offline
  • Posts: 540
    • View Profile
    • WWW
Re: Password Security
« Reply #20 on: February 21, 2010, 11:11:25 AM »
I think someone said above, that they use the users e-mail as the salt, and that its because it has to be unique, but so does the username :S
Logged
Project Choosen - 10%
Daniel - Hanson . Com

HauntedDawg

  • Basic Member
  • *
  • Reputation Power: 12
  • HauntedDawg has no influence.
  • Offline Offline
  • Posts: 25
    • View Profile
Re: Password Security
« Reply #21 on: February 22, 2010, 06:53:43 PM »
Sorry, but i have to have my say in this bit :P

Quote
whirlpool - 64682.96
md5 - 6890.058
sha1 - 8886.098
sha384 - 45102.119
sha512 - 45655.965

So, let's see..

Quote
Whirlpool looks bigger so people will avoid it, it is bigger but shown in my previous post it loads data faster than md5 and sha1

So Spud are you just stupid or do i have to basically spell it out for you, md5 is slower than whirlpool and it's been compared on so many websites, whirlpool is rarely compared and is faster

md5 and sha1 are 600 microsecond's faster, which isnt even noticable. But you say it load's data faster?

There is so many way's to prevent using hash's. One easy way is, secure your php code and website.

Oh zero, are you still using sprintf() to secure your script's? Pfft shame little boy..
Logged

Jordan

  • Active Member
  • **
  • Reputation Power: 55
  • Jordan has no influence.
  • Offline Offline
  • Posts: 102
  • Website Developer for hire;
    • MSN Messenger - Pudda2008@hotmail.co.uk
    • View Profile
    • WWW
    • Email
Re: Password Security
« Reply #22 on: February 23, 2010, 09:21:34 AM »
[..]

Oh zero, are you still using sprintf() to secure your script's? Pfft shame little boy..
[/..]

-.- Where did you get that from? Were talking about hash's?
Logged
Contact me
MakeWebGames.com

HauntedDawg

  • Basic Member
  • *
  • Reputation Power: 12
  • HauntedDawg has no influence.
  • Offline Offline
  • Posts: 25
    • View Profile
Re: Password Security
« Reply #23 on: February 23, 2010, 10:29:49 AM »
[..]

Oh zero, are you still using sprintf() to secure your script's? Pfft shame little boy..
[/..]

-.- Where did you get that from? Were talking about hash's?

It's a side note?
Logged

Danny696

  • Senior Member
  • ****
  • Reputation Power: 317
  • Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.Danny696 is a force to reckon with.
  • Offline Offline
  • Posts: 540
    • View Profile
    • WWW
Re: Password Security
« Reply #24 on: February 23, 2010, 11:05:40 AM »
Were talking about hash's?
We still are....back on topic, Cronwerks isnt the place for flaming ;)
Logged
Project Choosen - 10%
Daniel - Hanson . Com

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #25 on: February 23, 2010, 11:33:38 AM »
Quote
Oh zero, are you still using sprintf() to secure your script's? Pfft shame little boy..
Don't worry about my code kiddie i've hacked your **** so many times i could write a book on it. You didn't even know what sprintf was till i told you so shut up and crawl back into your hole you little cretin.

i didn't supply a link to where i got that information for on the times but lets see...

Hash

I actually bypassed your BB praser other day (ask dave)...

Have fun working at that bank Kyle

---
back on topic
---

It shows on php.net that Whirlpool is quicker so... if im wrong then so is php.net.

HauntedDawg

  • Basic Member
  • *
  • Reputation Power: 12
  • HauntedDawg has no influence.
  • Offline Offline
  • Posts: 25
    • View Profile
Re: Password Security
« Reply #26 on: February 24, 2010, 02:37:35 AM »
Quote
Oh zero, are you still using sprintf() to secure your script's? Pfft shame little boy..
Don't worry about my code kiddie i've hacked your **** so many times i could write a book on it. You didn't even know what sprintf was till i told you so shut up and crawl back into your hole you little cretin.

i didn't supply a link to where i got that information for on the times but lets see...

Hash

I actually bypassed your BB praser other day (ask dave)...

Have fun working at that bank Kyle

---
back on topic
---

It shows on php.net that Whirlpool is quicker so... if im wrong then so is php.net.


Please provide proof that you have hacked my #### kid, and when did you show me how to use and show me what is sprintf(), because as far as i know, i learnt about it way before you even signed up on CE, or don't you remmeber floydian's topic on sprintf() NO IT'S NOT A PHONE COMPANY thread?


My bb praser? WTF are you on about kiddo?

And as far as i am concerned that you think your a big kid behind a computer screen, it does not facinate me that you still think you have the ball's to say that you are better than everyone else, yet, you are pointed wrong on your flaw's and when you are, you are quickly to change them so no one notices. very nice of you i would say..

and unless you are blind, uhm, whirlpool is like 20 micosecond's slower than sha512, so might want to get your glasse's checked there mate.
Logged

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #27 on: February 24, 2010, 11:31:03 AM »
Whirlpool looks bigger so people will avoid it, it is bigger but shown in my previous post it loads data faster than md5 and sha1.

Notice something i say there?

--
I even informed you of your shoutbox been exploitable (you informed me of zturns) i then informed you of over 20 more exploits available on KC when you coded and secured it. Forgetful ain't you for a jumped up little 17 year old who works at a bank and gets paid.. what was it 10k a month?

I need glasses you say but i clearly stated SHA1 not SHA512 (i use SHA256 personally) but still Kyle you're the master remember. You joined MWG 2 month before me mate and yet still im sure alot of them remember you being the immature little runt who screwed people over.

Wasn't dev forum on your hosting then you sold it to a unreliable buyer for a little cash?

Sprintf you wasn't using till after half the forum including Karlos knew it so... im sure me pming you saying you should give it a look at didn't help at all huh... Really shows how much you know about sprintf when it's apparent sprintf is just that a output formatting function. Not technically proper security.

HauntedDawg

  • Basic Member
  • *
  • Reputation Power: 12
  • HauntedDawg has no influence.
  • Offline Offline
  • Posts: 25
    • View Profile
Re: Password Security
« Reply #28 on: February 24, 2010, 04:49:37 PM »
Whirlpool looks bigger so people will avoid it, it is bigger but shown in my previous post it loads data faster than md5 and sha1.

Notice something i say there?

--
I even informed you of your shoutbox been exploitable (you informed me of zturns) i then informed you of over 20 more exploits available on KC when you coded and secured it. Forgetful ain't you for a jumped up little 17 year old who works at a bank and gets paid.. what was it 10k a month?

I need glasses you say but i clearly stated SHA1 not SHA512 (i use SHA256 personally) but still Kyle you're the master remember. You joined MWG 2 month before me mate and yet still im sure alot of them remember you being the immature little runt who screwed people over.

Wasn't dev forum on your hosting then you sold it to a unreliable buyer for a little cash?

Sprintf you wasn't using till after half the forum including Karlos knew it so... im sure me pming you saying you should give it a look at didn't help at all huh... Really shows how much you know about sprintf when it's apparent sprintf is just that a output formatting function. Not technically proper security.

Lol, got to love your fake information there.

You did not inform me of my shoutbox being exploitable, mike did, then i informed you of over 3 of your mod's and there is like another 4 which i won't tell you. What 20 exploit's? And dont you know by now that when i owned KC i never knew much about security? Everyone else know's about that, but it was secured to an extent where no person with knowledge could get through.

No actualy dev forum was not sold to anyone, might want to check with mtg himself as i quote:

Quote
HauntedDawg says:
 what's this story that i sold Dev forum to an unreliable person for a little cash?
[c=36]Anthony[/c=48] - [c=48]Magictallguy[/c=36] says:
 I didn't say that at all
 I said you had sold the server it was hosted on to someone, and that they were unable to keep up with payments, nothing more.
 People wanted a reason as to why DF had disappeared, that was it I believe
HauntedDawg says:
 Firstly, i never sold the server. Secondly, my friend was paying for it all along, i only paid for the first month.

So another fact wrong of your's. And when did i use sprintf? Never, not once! And you pming me saying i should give it a look? Lol another fake fact.
« Last Edit: February 24, 2010, 04:53:02 PM by HauntedDawg »
Logged

CrimGame.com

  • Basic Member
  • *
  • Reputation Power: 21
  • CrimGame.com has no influence.
  • Offline Offline
  • Posts: 42
  • Play with me baby!
    • View Profile
    • WWW
Re: Password Security
« Reply #29 on: February 24, 2010, 05:52:22 PM »
I didn't say you sold Dev Forum once again you can't read

Quote
Wasn't dev forum on your hosting then you sold it to a unreliable buyer for a little cash?
so you didn't gain any money and Dev Forum didn't drop?

Mike informed me of a simple rating exploit which i then moved on to notice a large gap in security which i notified you off on CE i can find the post if you like, i can also find the one about your bank...

So please back on topic before you seriously make a bigger fool out of yourself, I have had two arguments on this post over a simple misread and a staff member being wrong.

You lot really need to grow up, This is my last reply on this matter (no matter what petty minded bullsh!t you invent next Kyle).
Pages: 1 [2] 3
« previous next »
 


This forum is now closed and has moved to a new location! Click here to find out why.