What specific transformation does LANMAN apply to passwords before hashing?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

What specific transformation does LANMAN apply to passwords before hashing?

Explanation:
LANMAN pre-processes a password by converting it to uppercase before hashing. This makes the resulting LM hash case-insensitive and is a defining part of how the algorithm operates. After uppercasing, the password is padded or truncated to a fixed length and then processed further to produce the hash. Because it does not apply any salt, and because lowercase, unchanged case, or other transformations aren’t used in this pre-processing, the correct description is converting to uppercase.

LANMAN pre-processes a password by converting it to uppercase before hashing. This makes the resulting LM hash case-insensitive and is a defining part of how the algorithm operates. After uppercasing, the password is padded or truncated to a fixed length and then processed further to produce the hash. Because it does not apply any salt, and because lowercase, unchanged case, or other transformations aren’t used in this pre-processing, the correct description is converting to uppercase.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy