vix.ing · top · new · best · stats

Passlab: A Password Security Tool for the Blue Team

2020/03/11 by Saul Johnson, Johnson, Saul
Computer Science · #Advanced Malware Detection Techniques #Cryptography and Security (cs.CR) #FOS: Computer and information sciences #Security and Verification in Computing #User Authentication and Security Systems #cs.CR

paper · pdf · doi:10.48550/arxiv.2003.07208

4 pages, 2 figures

arxiv created 2020/03/11 · openalex publication_date 2020/03/11 · arxiv updated 2020/03/17 · openalex created_date 2025/10/10 · openalex updated_date 2026/07/28

Abstract

If we wish to compromise some password-protected system as an attacker (i.e. a member of the red team), we have a large number of popular and actively-maintained tools to choose from in helping us to realise our goal. Password hash cracking hardware and software, online guessing tools, exploit frameworks, and a wealth of tools for helping us to perform reconnaissance on the target system are widely available. By comparison, if we wish to defend a password-protected system against such an attack (i.e. as a member of the blue team), we have comparatively few tools to choose from. In this research abstract, we present our work to date on Passlab, a password security tool designed to help system administrators take advantage of formal methods in order to make sensible and evidence-based security decisions using a clean and intuitive user interface.

Related