gpt4 book ai didi

delphi - 这个 "StretchKey"实现有什么问题?

转载 作者:行者123 更新时间:2023-12-02 04:57:25 25 4
gpt4 key购买 nike

我正在尝试创建该算法的 Delphi 版本:

void PWSfileV3::StretchKey(const unsigned char *salt, unsigned long saltLen,
const StringX &passkey,
unsigned int N, unsigned char *Ptag)
{
/*
* P' is the "stretched key" of the user's passphrase and the SALT, as defined
* by the hash-function-based key stretching algorithm in
* http://www.schneier.com/paper-low-entropy.pdf (Section 4.1), with SHA-256
* as the hash function, and N iterations.
*/
int passLen = 0;
unsigned char *pstr = NULL;

ConvertString(passkey, pstr, passLen);
unsigned char *X = Ptag;
SHA256 H0;
H0.Update(pstr, passLen);
H0.Update(salt, saltLen);
H0.Final(X);

#ifdef UNICODE
trashMemory(pstr, passLen);
delete[] pstr;
#endif

ASSERT(N >= MIN_HASH_ITERATIONS); // minimal value we're willing to use
for (unsigned int i = 0; i < N; i++) {
SHA256 H;
// The 2nd param in next line was sizeof(X) in Beta-1
// (bug #1451422). This change broke the ability to read beta-1
// generated databases. If this is really needed, we should
// hack the read functionality to try both variants (ugh).
H.Update(X, SHA256::HASHLEN);
H.Final(X);
}
}

更新:(缺少功能)

void ConvertString(const StringX &text,
unsigned char *&txt,
int &txtlen)
{
LPCTSTR txtstr = text.c_str();
txtlen = text.length();

#ifndef UNICODE
txt = (unsigned char *)txtstr; // don't delete[] (ugh)!!!
#else
#ifdef _WIN32
txt = new unsigned char[3*txtlen]; // safe upper limit
int len = WideCharToMultiByte(CP_ACP, 0, txtstr, txtlen,
LPSTR(txt), 3*txtlen, NULL, NULL);
ASSERT(len != 0);
#else
mbstate_t mbs;
memset(&mbs, '\0', sizeof(mbs));
size_t len = wcsrtombs(NULL, &txtstr, 0, &mbs);
txt = new unsigned char[len+1];
len = wcsrtombs((char *)txt, &txtstr, len, &mbs);
ASSERT(len != (size_t)-1);
#endif
txtlen = len;
txt[len] = '\0';
#endif /* UNICODE */
}

这是我得到的(D2009 版本):

(请注意:T256BitArray 被定义为字节的 Array[0..31])

procedure StretchKey(Const Salt:T256BitArray; Const Passkey:string; Const Iterations:LongWord; Var KeyResult:T256BitArray);
var
pStr : RawByteString;
wHash : THash_sha256;
loop : integer;
begin
pStr := AnsiString(PassKey);

wHash := THash_SHA256.Create;
try
wHash.Init;
wHash.Calc(pStr[1], Length(pStr));
wHash.Calc(Salt, Length(Salt));
wHash.Done;
PStr := wHash.DigestStr;
finally
FreeAndNil(wHash);
end;

for loop := 0 to Iterations-1 do
begin
wHash := THash_sha256.Create;
try
wHash.Init;
wHash.Calc(PStr[1], wHash.DigestSize);
wHash.Done;
PStr := wHash.DigestStr;
finally
FreeAndNil(wHash);
end;
end;

move(pStr[1], KeyResult, sizeof(KeyResult));
end;

原始代码片段来自密码安全开源应用程序。

我正在尝试打开现有的密码保存 (v3) 数据库进行读取。

看来无论我做什么都无法使算法生成所需的哈希值。

在上面的 Delphi 代码片段中,我使用的是 DEC v5.2 2009 组件集。我还尝试过 DCPcrypt 库。有趣的是,我从两个库中获得了相同的值,但没有任何结果与 PWSv3 文件中的哈希值兼容。

我使用的 SHA256 组件都通过了 SHA256 测试向量哈希,因此我假设这是我在重新编码方法时做错的事情。

我错过了什么吗?

已解决:一切都是正确的。问题出在 key 字符串的转换上。我发现我必须使用 WideCharToMultiByte 函数才能获得正确的代码页转换。

最佳答案

下半部分的循环不应该有wHash.Init;就在其中。

关于delphi - 这个 "StretchKey"实现有什么问题?,我们在Stack Overflow上找到一个类似的问题: https://stackoverflow.com/questions/1323134/

25 4 0
Copyright 2021 - 2024 cfsdn All Rights Reserved 蜀ICP备2022000587号
广告合作:1813099741@qq.com 6ren.com