[VOIPSEC] FWD - Hotel and Wfi Insecurity, including SIP

Richard Clayton richard at highwayman.com
Mon Nov 21 10:22:16 GMT 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

In message <D71Do+S4QZgDFAU+ at highwayman.com>, Richard Clayton
<richard at highwayman.com> writes

>In message <200511210730.jAL7U8gu004318 at ms-smtp-03.rdc-kc.rr.com>,
>Philip Walenta <pwalenta at wi.rr.com> writes
>
>>Heck, Cain can even crack the RSA SecurID token pattern given a little
>>information.

having now checked [and my apologies for replying to myself] ...

the "little information" is the key fob serial number (inscribed on the
back) and the token activation number (supplied to the central server).
So nothing to do with the 2**40 attacks, and everything to do with
having been provided with the master secrets :)

- -- 
richard                                                  Richard Clayton

Those who would give up essential Liberty, to purchase a        Benjamin
little temporary Safety, deserve neither Liberty nor Safety.    Franklin

-----BEGIN PGP SIGNATURE-----
Version: PGPsdk version 1.7.1

iQA/AwUBQ4Gf2JoAxkTY1oPiEQJVKQCgzVr7izhsDijtd+5/rEmFpOVJjjsAoL8i
IvnVOlWXTMdKwWPAQQPM9sIn
=O0cW
-----END PGP SIGNATURE-----



More information about the Voipsec mailing list