Encryption 解码十六进制异或加密

Encryption 解码十六进制异或加密,encryption,decoding,xor,hex,Encryption,Decoding,Xor,Hex,所以我读它是为了解密 9887702584b28e6c71b7bb997e7195bf817a3884bf98353889fa9f7d34c7bc8a7625c7ae837425cbfa9e7b258eb6cb73308ea8876c7195bf88703f93b69239718eaecb623094fa9b673e85bb897928c798997c2586b3853222c7b88e6625c7b18e6525c7a98e762382aec535058fb398353894fa897032

所以我读它是为了解密

 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

我需要将其拆分为5个通道,并求解单字节异或键,得到一个候选键daeb1551e7。我的问题是,您如何知道需要将其拆分为多少个不同的频道,以及拆分发生的位置

这是我得到的,它是用javascript编写的:

var cryptmsg="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";
var key="daeb1551e7";
var hexmsg=Array.from(cryptmsg);
var hexkey=Array.from(key);
var channels=[

];

while(hexkey.length){
  var buffer=hexkey.splice(0,2);
  var channel={
    msg:[],
    key:buffer.join("")
  };
  channels.push(channel);
}

var chanIndex=0;
while(hexmsg.length){
  var buffer=hexmsg.splice(0,2);
  channels[chanIndex].msg.push(buffer);
  chanIndex++;
  chanIndex=chanIndex%5;
}
var channelResults=channels.map(function(channel){
  var nkey=parseInt(channel.key,16);
  return channel.msg.map(
    function(pair){return pair[0]+pair[1];}
  ).map(function(hexchar){
    var nchar=parseInt(hexchar,16);
    var ndec=nchar^nkey;
    return String.fromCharCode(ndec);
  });
});
var decodedMsg=[];
chanIndex=0
while(1){
  var chresult=channelResults[chanIndex];
  if(chresult.length<=0)break;
  decodedMsg.push(chresult.shift());
  chanIndex++;
  chanIndex=chanIndex%5;
}
decodedMsg.join("");
事实证明,每个通道都有自己的一个字节密钥,特定通道的“消息”是从原始加密消息(即字节1到通道1,字节2到通道2,…,字节6到通道1)循环获取的字节十六进制对聚合而成的。使用单字节键进行解码。然后,通过反转我们将加密的消息字节“整理”到它们的通道中所采取的过程来重构最终解密的消息

使现代化 紧凑型:

var cryptmsg="9887702584b28e6c71b7bb997e7195bf817a3884bf98353889fa9f7d34c7bc8a7625c7ae837425cbfa9e7b258eb6cb73308ea8876c7195bf88703f93b69239718eaecb623094fa9b673e85bb897928c798997c2586b3853222c7b88e6625c7b18e6525c7a98e762382aec535058fb398353894fa89703286af98707188bccb613982fa98703295bf886c7194af99673e92b48f7c3f80fa8a793dc7ae83707186b99f7c278eae827022c7b98a67238ebf8f353e89fa83702382fa8f60238eb48c350688a8877171b0bb99350590b5cb623094fa84737191b39f743dc7b386653e95ae8a7b3282fa9f7a7188af99353f86ae827a3f86b6cb663484af997c259efa8a7b35c7af8761388abb9f707191b388613e95a3c5";
var key="daeb1551e7";
var aCryptMsg=Array.prototype.slice.call(cryptmsg);
var aKey=Array.prototype.slice.call(key);
var chanKey=[];
var chanIndex=0;
var aDecryptMsg=[];
function dec(nkey,ncrypt){
    var ndec=nkey^ncrypt;
    return String.fromCharCode(ndec); 
}
while(aKey.length){
  var buffer=aKey.splice(0,2);
  var nkey=parseInt(buffer.join(""),16);
  chanKey.push(nkey);
}
while(aCryptMsg.length){
  var buffer=aCryptMsg.splice(0,2);
  var ncrypt=parseInt(buffer.join(""),16);
  var debuf=dec(chanKey[chanIndex],ncrypt);
  aDecryptMsg.push(debuf);
  chanIndex=(++chanIndex)%5;
}
aDecryptMsg.join("");

/*
Bletchey Park rejoices in the fact that, until fairly recently, it was probably Britain's best kept secret. This is because of the secrecy surrounding all the activities carried on here during World War Two was of vital importance to our national security and ultimate victory.
*/
要查看的解决方案:


以下是如何确定有多少个通道:

将加密的字节序列向右移动一个位置。用左边的0x00填充。然后将结果与原始字符串进行异或运算,并计算零位数。如果零位约为位的65%,则键有一个字节。如果零位大约是位的50%,那么密钥没有一个字节,我们再试一次

获取原始的加密字节序列,并将其向右移动两处。在左侧用0x0000填充。将结果与原始结果进行异或运算。如果得到65%的零位,则密钥有两个字节。如果为50%,则不是两个字节

继续,直到在键中找到byres的数量

对于您的信息,以下是百分比:

1字节移位:48.4% 2字节移位:47.1% 3字节移位:47.5% 4字节移位:48.6%
5字节移位:66.7%您使用的加密算法是什么?很多密码都使用XOR,所以称这种XOR加密并不能真正提供任何信息。我指的是网站上的一个部分:向下滚动,直到到达标题XOR Extended:Multi-byte Repeated XOR,再往下一点就是我在问题中输入的数字。我想知道键值是如何找到的基于这一点,看起来5是多字节键的猜测长度,基于汉明距离,将其拆分为通道意味着提取所有与键字节0、5、10…的第一个字节异或的字节,所有与键1、6、11…的第二个字节异或的字节…,等等但这类事情与编程无关,与StackOverflow无关;那就更合适了。是什么让它必须被分成5个通道呢?@Lanhasts你实际上不需要把数据分成5个通道,我这么做只是因为我匆忙地把一些东西放在一起。表示键的十个十六进制数字需要拆分为5个键,每个键的每个字节有2个十六进制。然后遍历加密的消息,每次取两个十六进制,转换为字节1-255,用密钥解码一个字节,然后从结果字节生成一个解密字符。对具有相应密钥的字节进行循环解码,以便密钥[0]用于字节[0],密钥[1]:字节[1],然后循环回密钥[0]用于字节[5]。应该只需要两个相当紧凑的while循环。假设这也是一个5通道xor加密。您需要为每个键字节求解。您可以通过迭代0-255中的每个密钥,并找到一个解密的子结果或“通道”来实现这一点,该子结果或“通道”可以最大化ascii表中的可读字符数并最小化不可读字符。太多不可读的字符,而且您不可能在这里假设它是正确的键。在这种情况下,将加密消息拆分为消息“通道”可能会很有用,就像在我回答的第一个代码片段中所做的那样。@Lanhasts:Woah,请稍等片刻!!我几乎放弃了,直到我把频道设置为8个。这是一条关于国家安全局的信息。我将发布解决方案。谢谢!您使用什么来运行javascript?
var cryptmsg="9887702584b28e6c71b7bb997e7195bf817a3884bf98353889fa9f7d34c7bc8a7625c7ae837425cbfa9e7b258eb6cb73308ea8876c7195bf88703f93b69239718eaecb623094fa9b673e85bb897928c798997c2586b3853222c7b88e6625c7b18e6525c7a98e762382aec535058fb398353894fa89703286af98707188bccb613982fa98703295bf886c7194af99673e92b48f7c3f80fa8a793dc7ae83707186b99f7c278eae827022c7b98a67238ebf8f353e89fa83702382fa8f60238eb48c350688a8877171b0bb99350590b5cb623094fa84737191b39f743dc7b386653e95ae8a7b3282fa9f7a7188af99353f86ae827a3f86b6cb663484af997c259efa8a7b35c7af8761388abb9f707191b388613e95a3c5";
var key="daeb1551e7";
var aCryptMsg=Array.prototype.slice.call(cryptmsg);
var aKey=Array.prototype.slice.call(key);
var chanKey=[];
var chanIndex=0;
var aDecryptMsg=[];
function dec(nkey,ncrypt){
    var ndec=nkey^ncrypt;
    return String.fromCharCode(ndec); 
}
while(aKey.length){
  var buffer=aKey.splice(0,2);
  var nkey=parseInt(buffer.join(""),16);
  chanKey.push(nkey);
}
while(aCryptMsg.length){
  var buffer=aCryptMsg.splice(0,2);
  var ncrypt=parseInt(buffer.join(""),16);
  var debuf=dec(chanKey[chanIndex],ncrypt);
  aDecryptMsg.push(debuf);
  chanIndex=(++chanIndex)%5;
}
aDecryptMsg.join("");

/*
Bletchey Park rejoices in the fact that, until fairly recently, it was probably Britain's best kept secret. This is because of the secrecy surrounding all the activities carried on here during World War Two was of vital importance to our national security and ultimate victory.
*/
var cryptmsg
var aCryptMsg=Array.from(cryptmsg);
var channelCount=8;
var channel=[];
var chanIndex=0;
function dec(nkey,ncrypt){
  var ndec=nkey^ncrypt;
  return ndec;
}

for(var i=0; i<channelCount; i++){
  channel[i]=[];
}
while(aCryptMsg.length){
  var buffer=aCryptMsg.splice(0,2).join("");
  var ncrypt=parseInt(buffer,16);
  channel[chanIndex].push(ncrypt);
  chanIndex=(++chanIndex)%channelCount;
}
var goody=Object.create(null);
var alphanumerics=[[0x30,0x39],[0x41,0x5a],[0x61,0x7a]];
var alphabetical=[[0x41,0x5a],[0x61,0x7a]];
var currentRanges=alphanumerics;
currentRanges.forEach(function(range){
  var indexStart=range[0];
  var indexEnd=range[1];
  for (var i=indexStart; i<=indexEnd; i++){
    //table.push(String.fromCharCode(i));
    var ch=String.fromCharCode(i);
    goody[ch]=1;
  }   
});
(" ,.;:!\"'").split("").forEach(ch=>goody[ch]=1);

function findKeyCandidate(byteArray){
  var keyResults=[];
  for (var key=0; key<256; key++){
    keyResults[key]=0;
    byteArray.forEach(function(ncrypt){
      var ndec=dec(key,ncrypt);
      var dchar=String.fromCharCode(ndec);
      if(goody[dchar]){
        keyResults[key]++;
      }
    });
  }
  keyResults=keyResults.map(function(count,index){
    return {key:index,count:count};
  });
  keyResults.sort(function(a,b){
    return a.count-b.count;
  });
  return keyResults.pop().key;
}

var chanKey=channel.map(findKeyCandidate);
chanIndex=0;
var aDecrypMsg=[];
while(channel[chanIndex].length>0){
  var ncrypt=channel[chanIndex].shift();
  var nkey=chanKey[chanIndex];
  var ndec=dec(nkey,ncrypt);
  aDecrypMsg.push(ndec);
  chanIndex=(++chanIndex)%channelCount;
}
aDecrypMsg.map(function(byte){return String.fromCharCode(byte)}).join("");  
/*
your flag is: 93ea36e84ba568b6590ec3b147d7a01e45b66202

On 17 March 1975, the proposed DES was published in the Federal Register. Public comments were requested, and in the following year two open workshops were held to discuss the proposed standard. There was some criticism from various parties, including from public-key cryptography pioneers Martin Hellman and Whitfield Diffie, citing a shortened key length and the mysterious "S-boxes" as evidence of improper interference from the NSA. The suspicion was that the algorithm had been covertly weakened by the intelligence agency so that they - but no-one else - could easily read encrypted messages. Alan Konheim (one of the designers of DES) commented, "We sent the S-boxes off to Washington. They came back and were all different." The United States Senate Select Committee on Intelligence reviewed the NSA's actions to determine whether there had been any improper involvement. In the unclassified summary of their findings, published in 1978, the Committee wrote:

    In the development of DES, NSA convinced IBM that a reduced key size was sufficient; indirectly assisted in the development of the S-box structures; and certified that the final DES algorithm was, to the best of their knowledge, free from any statistical or mathematical weakness.

However, it also found that

    NSA did not tamper with the design of the algorithm in any way. IBM invented and designed the algorithm, made all pertinent decisions regarding it, and concurred that the agreed upon key size was more than adequate for all commercial applications for which the DES was intended.

Another member of the DES team, Walter Tuchman, stated "We developed the DES algorithm entirely within IBM using IBMers. The NSA did not dictate a single wire!" In contrast, a declassified NSA book on cryptologic history states:

    In 1973 NBS solicited private industry for a data encryption standard (DES). The first offerings were disappointing, so NSA began working on its own algorithm. Then Howard Rosenblum, deputy director for research and engineering, discovered that Walter Tuchman of IBM was working on a modification to Lucifer for general use. NSA gave Tuchman a clearance and brought him in to work jointly with the Agency on his Lucifer modification."

and

    NSA worked closely with IBM to strengthen the algorithm against all except brute force attacks and to strengthen substitution tables, called S-boxes. Conversely, NSA tried to convince IBM to reduce the length of the key from 64 to 48 bits. Ultimately they compromised on a 56-bit key.

Some of the suspicions about hidden weaknesses in the S-boxes were allayed in 1990, with the independent discovery and open publication by Eli Biham and Adi Shamir of differential cryptanalysis, a general method for breaking block ciphers. The S-boxes of DES were much more resistant to the attack than if they had been chosen at random, strongly suggesting that IBM knew about the technique in the 1970s. This was indeed the case; in 1994, Don Coppersmith published some of the original design criteria for the S-boxes. According to Steven Levy, IBM Watson researchers discovered differential cryptanalytic attacks in 1974 and were asked by the NSA to keep the technique secret. Coppersmith explains IBM's secrecy decision by saying, "that was because [differential cryptanalysis] can be a very powerful tool, used against many schemes, and there was concern that such information in the public domain could adversely affect national security." Levy quotes Walter Tuchman: "[t]hey asked us to stamp all our documents confidential... We actually put a number on each one and locked them up in safes, because they were considered U.S. government classified. They said do it. So I did it". Bruce Schneier observed that "It took the academic community two decades to figure out that the NSA 'tweaks' actually improved the security of DES."
*/