GPU-based password cracking
University of Amsterdam, System and Network Engineering
University of Amsterdam, System and Network Engineering (2010)
@article{bakker2010gpu,
title={GPU-based password cracking},
author={Bakker, M. and van der Jagt, R.},
year={2010}
}
In this research the following question is answered: what should KPMG advice their clients regarding to password length and complexity, now GPU-based password cracking has become a reality. To be able to answer this question, tests with different tools and hashes were performed on a system with four high end GPUs. The test system showed an improvement of a factor fourteen in brute force speed in comparison with modern CPUs. KPMG’s advice to their clients regarding password length and complexity should be one of the following (this applies to all the hashes that were researched): Nine or more characters with lower and upper case letters, digits and punctuation marks; Ten or more characters with lower and upper case letters and digits; Twelve or more characters with lower case letters and digits.
March 21, 2011 by hgpu