Bsides LV 2014 - Untwisting The Mersenne Twister: How I killed the PRNG - 05Aug2014
05 Aug 2014 - Bsides Las Vegas 2014 Joe "moloch" - Bishop Fox Dan "AltF4" Petro - Bishop Fox http://www.bishopfox.com http://www.bishopfox.com/blog/2014/08... http://www.irongeek.com/i.php?page=vi... Untwisting The Mersenne Twister: How I killed the PRNG Applications rely on generating random numbers to provide security, and fail catastrophically when these numbers turn out to be not so “random.” For penetration testers, however, the ability to exploit these systems has always been just out of reach. To solve this problem, we’ve created “untwister:” an attack tool for breaking insecure random number generators and recovering the initial seed. We did all the hard math, so you don't have to! Random numbers are often used in security contexts for generating unique IDs, new passwords for resets, or cryptographic nonces. However, the built-in random number generators for most languages and frameworks are insecure, leaving applications open to a series of previously theoretical attacks. Lots of papers have been written on PRNG security, but there's still almost nothing practical you can use as a pentester to actually break live systems in the wild. This talk focuses on weaponizing what used to be theoretical into our tool: untwister. Let's finally put rand() to rest. DISCLAIMER: This video is intended for pentesting training purposes only.

NMCS4ALL: Random number generators

True Random Numbers - Computerphile

Black Hat USA 2013 - Black-Box Assessment of Pseudorandom Algorithms

The Most Popular Pseudo-Random Number Generator - The Mersenne-Twister

Coding Math: Episode 52 - Pseudo Random Number Generators, Part II

learning hacking? DON'T make this mistake!! (hide yourself with Kali Linux and ProxyChains)

Something is jamming GPS over Europe. Here's what we found

Tom Liston, Random Facts About Mersenne Twisters | KringleCon 2020

Defeat 2FA token because of bad randomness - rhme2 Twistword (Misc 400)

I Gave ChatGPT a Body

I Hacked This Temu Router. What I Found Should Be Illegal.

The Insane Genius of a Formula 1 Gearbox

What The Architect Scene in The Matrix ACTUALLY Means

Creator of C++: Bell Labs, Negative Overhead Abstraction, Mistakes | Bjarne Stroustrup

Randomness is Random - Numberphile

The Strange Math That Predicts (Almost) Anything

Random Numbers (2 of 2: Linear Congruential Generator)

Knife Expert: Real Knife Defense Is TERRIFYING

Trump Preps for 80th Birthday, Threatens to Hit Iran, Knicks Historic Win & Elon Musk Trillionaire!?

