Solved

encryption algorithm (urgent)

Posted on 2003-11-24
5
422 Views
Last Modified: 2010-04-17
yo im making my own (stream) encryption algorithm which is basically

for 0<=x<=length of text to be encrypted

text character(x) is xored by every pass character in turn

text character(x) is xored by the length of the entire password

text character(x) is xored by 1 pass character which rotates (i.e. the x th pass character mod the length of the password)

my problem is: if the password is longer than the text, the order of the excess of the password does not matter i.e.

text: ab
pass: 12345678

the incorrect pass: 12876543 will sucessfully decrypt the ciphertext :(

plz list ANY ideaz coz i really need to have this finished REALLY soon

thankz

suma
0
Comment
Question by:suma_ds
  • 2
  • 2
5 Comments
 
LVL 22

Expert Comment

by:cookre
ID: 9815609
If the text to be encrypted is shorter than the key, why not pad the text out?

Or, consider the following.  So short a piece of plain text, in and of itself, should never carry much import, as a brute force and ignorance attack is quickly successful.  For example, not even the greenest security officer would every condone such a short, say, password for even the least userid.

0
 
LVL 1

Author Comment

by:suma_ds
ID: 9815705
ok i have tried padding the text but this does not increase security,  for example

text: abcd

pass: 12345678

padded text abcd0000

incorrect pass: 12348765

plaintext produced from decrypting with incorrect pass: abcdXXXX (X stands for any character)

this does not solve the problem coz it will be very obvious that the X's are just padding

0
 
LVL 22

Accepted Solution

by:
cookre earned 125 total points
ID: 9815821
Hence the comment about little security for short plain text.

Now, if the recipient knows the good part is just, in this case, two bytes, and the cracker doesn't, padding with randomized instances of the plain text (e.g., abbbabaa) would make the crackers life a tad more difficult.

<justthinkingoutloud>
I wonder if you'd have the same problem with something like:

taking the stream in chunks of password length (padded if needed):

a <- chunk XOR password
a <- leftcircularshift(a,1)

a <- ak XOR password
a <- leftcircularshift(a,1)

a <- ak XOR password
a <- leftcircularshift(a,1)

with the decrypt being:

a <- rightcircularshift(chunk,1)
a <- a XOR password

a <- rightcircularshift(a,1)
a <- a XOR password

a <- rightcircularshift(a,1)
a <- a XOR password
</justthinkingoutloud>
0
 
LVL 84

Expert Comment

by:ozo
ID: 9815852
xoring with a password is a very weak encryption system even whenmodified to avoid the above problems
Here is a list of some stronger encryption algorithms
http://www.ssh.fi/support/cryptography/algorithms/symmetric.html
0
 
LVL 1

Author Comment

by:suma_ds
ID: 9816103
thankz cookre... that should work heaps good :)
0

Featured Post

ScreenConnect 6.0 Free Trial

Discover new time-saving features in one game-changing release, ScreenConnect 6.0, based on partner feedback. New features include a redesigned UI, app configurations and chat acknowledgement to improve customer engagement!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This is an explanation of a simple data model to help parse a JSON feed
Displaying an arrayList in a listView using the default adapter is rarely the best solution. To get full control of your display data, and to be able to refresh it after editing, requires the use of a custom adapter.
An introduction to basic programming syntax in Java by creating a simple program. Viewers can follow the tutorial as they create their first class in Java. Definitions and explanations about each element are given to help prepare viewers for future …
In this seventh video of the Xpdf series, we discuss and demonstrate the PDFfonts utility, which lists all the fonts used in a PDF file. It does this via a command line interface, making it suitable for use in programs, scripts, batch files — any pl…

810 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question