Cracking With The Cloud

Cloudcracker is a web service that can supposedly crack any VPN of WiFi connection using MS-CHAPv2 encryption within 24 hours - for $200. This feat is accomplished by a fancy server that is able to test 18 billion keys every second which is, um, quite a lot.
Despite its (long) known weaknesses, MS-CHAPv2 is still widely used, especially in company environments, as the authentication protocol is supported out of the box by many operating systems. A PPTP/MS-CHAP2 combination is also in widespread use on smartphones.
Sounds like it's time to change that protocol, folks.

No comments:

Post a Comment