Top 10 winner
Bruteforce of PHPSESSID
Not So Random Numbers. Take Two
Positive Technologies turn Argyros and Kiayias's PHP randomness research into a working attack on PHPSESSID. The session id is an MD5 of client IP, timestamp, microseconds and php_combined_lcg output, and two tricks cut the search space: adversarial time synchronisation pins the server clock from the Date header, and request twins minimise the gap between two requests.
Record
- Document
- Not So Random Numbers. Take Two
- Researcher
- Arseny Reutov, Timur Yunusov and Dmitry Nagibin
- Published by
- blog.ptsecurity.com
- Date
- Topic
- Server
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Arseny Reutov, Timur Yunusov and Dmitry Nagibin, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .