Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

PHP Forum


You are currently viewing our PHP Forum as a guest. Please register to participate.
Login



Freelance Jobs

Closed Thread
Old 03-04-2008, 05:57 AM decrypt md5
Junior Talker

Posts: 2
Name: BHARANIKUMAR
Trades: 0
dears
having password in my db..

how to decript that md5 value ..

thanks in advance
bharanikumarphp is offline
View Public Profile
 
 
Register now for full access!
Old 03-04-2008, 07:09 AM Re: decrypt md5
mtishetsky's Avatar
King Spam Talker

Posts: 1,226
Name: Mike
Location: Mataro, Spain
Trades: 0
Brute force is the only way, but it will take years. Better change that password.
__________________

Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE

And don't forget to give me talkupation!
mtishetsky is offline
View Public Profile Visit mtishetsky's homepage!
 
Old 03-04-2008, 08:38 AM Re: decrypt md5
Average Talker

Posts: 26
Name: Andy
Trades: -1
You dont need to decrypt it, md5 is one-way encryption. You just compare the password submited with the one in the database and see if they match.
Pash is offline
View Public Profile
 
Old 03-04-2008, 03:27 PM Re: decrypt md5
NullPointer's Avatar
Will Code for Food

Posts: 2,815
Name: Matt
Location: Irvine, CA
Trades: 0
So long as the hash wasn't generated using a salt there is a decent chance that you can generate a collision in a reasonable amount of time. My concern is, why do you need to decrypt a password in your own database. Couldn't you just change the hash to that of a password you already know?
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
NullPointer is online now
View Public Profile Visit NullPointer's homepage!
 
Old 03-04-2008, 03:53 PM Re: decrypt md5
Defies a Status

Posts: 1,606
Trades: 0
Quote:
Originally Posted by NullPointer View Post
So long as the hash wasn't generated using a salt there is a decent chance that you can generate a collision in a reasonable amount of time. My concern is, why do you need to decrypt a password in your own database. Couldn't you just change the hash to that of a password you already know?

And if you need one to plug in there one of us can help you out with a generic one. Then once you login you just change it again.
__________________
Colbyt

Please login or register to view this content. Registration is FREE
colbyt is offline
View Public Profile
 
Old 03-04-2008, 04:06 PM Re: decrypt md5
rogem002's Avatar
PHP Chap

Posts: 843
Name: Mike
Location: United Kingdom
Trades: 0
MD5 is a one-way encryption, meaning the only way to find out what something (for example a password in a database) is to go through every combination.

Some websites have done this (Look for md5 rainbow tables), though this is limited to basic words/phrases.
__________________
My Blog/Site:
Please login or register to view this content. Registration is FREE
rogem002 is offline
View Public Profile Visit rogem002's homepage!
 
Old 03-05-2008, 12:22 AM Re: decrypt md5
Arenlor's Avatar
Ultra Talker

Posts: 462
Name: Jerod Lycett
Location: /home/arenlor
Trades: 0
http://www.md5decrypter.com/ one of my favorite sites.
__________________
PHP Code:
<?php echo "Hello World"?>
HTML Code:
<html><head><title>Hello World</title></head><body><p>Hello World</p></body></html>
Arenlor is offline
View Public Profile Visit Arenlor's homepage!
 
Old 03-05-2008, 12:54 AM Re: decrypt md5
mtishetsky's Avatar
King Spam Talker

Posts: 1,226
Name: Mike
Location: Mataro, Spain
Trades: 0
Well yeah, very good site.

Md5 Hash: dc226fbd97143b2b1a2a38d8895bf743
A decryption for this hash wasn't found in our database
__________________

Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE

And don't forget to give me talkupation!
mtishetsky is offline
View Public Profile Visit mtishetsky's homepage!
 
Old 03-05-2008, 01:02 AM Re: decrypt md5
Arenlor's Avatar
Ultra Talker

Posts: 462
Name: Jerod Lycett
Location: /home/arenlor
Trades: 0
Yeah they don't have them all, but it's useful to run your password's MD5 through there to see.
__________________
PHP Code:
<?php echo "Hello World"?>
HTML Code:
<html><head><title>Hello World</title></head><body><p>Hello World</p></body></html>
Arenlor is offline
View Public Profile Visit Arenlor's homepage!
 
Old 03-05-2008, 01:23 AM Re: decrypt md5
NullPointer's Avatar
Will Code for Food

Posts: 2,815
Name: Matt
Location: Irvine, CA
Trades: 0
That site is the reason why passwords should be encrypted with a salt. vBulletin does it and so should you

Better yet, don't use md5 at all. Use sha1 and a salt and the chances of your passwords being decrypted are virtually zero. The added entropy also prevents collisions
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE

Last edited by NullPointer; 03-05-2008 at 01:24 AM..
NullPointer is online now
View Public Profile Visit NullPointer's homepage!
 
Old 03-05-2008, 02:01 AM Re: decrypt md5
mtishetsky's Avatar
King Spam Talker

Posts: 1,226
Name: Mike
Location: Mataro, Spain
Trades: 0
Wtf. If your password is not qwerty or 123 or any dictionary word there is no difference between sha1 and md5 because both will take infinity to decrypt if the only way to check the password is applying it to login form. And considering that to decrypt the password you should first obtain its hash in some way the task becomes completely impossible.
__________________

Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE

And don't forget to give me talkupation!
mtishetsky is offline
View Public Profile Visit mtishetsky's homepage!
 
Old 03-05-2008, 02:19 AM Re: decrypt md5
NullPointer's Avatar
Will Code for Food

Posts: 2,815
Name: Matt
Location: Irvine, CA
Trades: 0
Quote:
Originally Posted by mtishetsky View Post
Wtf. If your password is not qwerty or 123 or any dictionary word there is no difference between sha1 and md5 because both will take infinity to decrypt if the only way to check the password is applying it to login form. And considering that to decrypt the password you should first obtain its hash in some way the task becomes completely impossible.
Are you saying you should assume that the users of the application you code will know better than to use dictionary words as passwords? Besides, I am not suggesting that a brute force attack be used to decrypt either, there are better ways.

http://en.wikipedia.org/wiki/Sha1#Cr...lysis_of_SHA-1
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
NullPointer is online now
View Public Profile Visit NullPointer's homepage!
 
Old 03-05-2008, 03:50 AM Re: decrypt md5
mtishetsky's Avatar
King Spam Talker

Posts: 1,226
Name: Mike
Location: Mataro, Spain
Trades: 0
I guess that if your data is so valueable that the password decryption can be used there are better ways to steal that data, e.g. using system security holes, not the script ones.
__________________

Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE
-
Please login or register to view this content. Registration is FREE

And don't forget to give me talkupation!
mtishetsky is offline
View Public Profile Visit mtishetsky's homepage!
 
Closed Thread     « Reply to decrypt md5
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 0.59388 seconds with 12 queries