Salts in Bitcoin wallet.dat hashes
#11
(11-21-2020, 01:59 PM)MA40 Wrote: According to the Wikipedia article, salts are kept separate from hashes to be effective.

They are not and that's not the purpose of a salt. A salt is almost always stored alongside the hash, as is also written in the wikipedia article. The wallet.dat file does include the salt. Otherwise, as you already noted, there's no way to calculate the correct hash value.

(11-21-2020, 07:43 PM)MA40 Wrote:  Just by the hash it is possible to know if the password is "ABCDE" and the salt "12345" or if "ABCDE12345" is really the whole password?

Most hashing constructions are more complex than simply concatenating password and salt. Various solutions exist. In the simplest case that you have described what you wrote is indeed a weakness. It would not be possible to discern directly between password and salt in the plaintext.
Reply


Messages In This Thread
Salts in Bitcoin wallet.dat hashes - by MA40 - 11-08-2020, 07:49 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-15-2020, 04:15 PM
RE: Salts in Bitcoin wallet.dat hashes - by Mem5 - 11-19-2020, 12:32 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-20-2020, 08:22 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-20-2020, 10:01 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-21-2020, 01:59 PM
RE: Salts in Bitcoin wallet.dat hashes - by Mem5 - 11-21-2020, 03:48 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-21-2020, 07:43 PM
RE: Salts in Bitcoin wallet.dat hashes - by undeath - 11-21-2020, 09:30 PM
RE: Salts in Bitcoin wallet.dat hashes - by MA40 - 11-22-2020, 08:30 PM
RE: Salts in Bitcoin wallet.dat hashes - by Mem5 - 11-24-2020, 12:11 PM