/[public]/psiconv/trunk/formats/psion/Password_Section.psi
ViewVC logotype

Contents of /psiconv/trunk/formats/psion/Password_Section.psi

Parent Directory Parent Directory | Revision Log Revision Log


Revision 86 - (show annotations)
Thu Dec 28 15:49:12 2000 UTC (23 years, 4 months ago) by frodo
File MIME type: application/octet-stream
File size: 2820 byte(s)
(Frodo) Update of format description. Added some obscure layout codes.

1 7mþŸUÓ
2 3 
3 dÈ"Times New RomanN123O*Koptekst 1L ð
4 < *Koptekst 2Lð ð
5 < *Koptekst 3L *OpsomtekenO³•Swissÿÿÿÿh3r h3r ÐР \cefd\cDefLdý‚.ÆAÅ[Password Section]Password SectionThis sextion is found in documents that have been encrypted with a password. Its contents is not yet fully decoded. It is 29 bytes long. Size Data Description B Always A2 ? W Always 01 00 ? W Checksum ? L «ID» Always 03 01 00 10 ? 20B Encrypted passwordPresumably, the plaintext password is put through a (one-way?) hash function and the result is put in this section.[Encrypted Sections]Encrypted SectionsIf a file is encrypted by a password, only a few sections will actually be encrypted: Filetype SectionID Section Name «Word File» 10000106 «Text Section» «Sheet File» 1000011D 10000121[Encryption Method]Encryption MethodThe plaintext is separated into blocks of 20 bytes. The last block is padded with bytes containing 30. Each block is encypted by adding a 20 byte long key. This key is somehow based on the plaintext password (probably through a similar, though different, hash function as that which is used to encrypt the password), and it is the same for each block. The resulting encryption seems to be fairly weak. For a word file, for example, you can gather a lot of information from the other (unencrypted) sections; for a longer text, this is probably enough to break the encryption key, without ever needing the plaintext password! This could even be automated somewhat: if there is a ParagraphElement List, you know the length of each paragraph; you also know that (almost) all paragraphs end with a 06 byte.ð " Courier New ð"Times New Roman È" Courier New‰ tV$&aÃð
6 @"Arialð"Times New Roman " Courier New " Courier New ð"Times New Roman ð"Times New Roman È" Courier New" È" Courier New È" Courier New ð"Times New Roman ð"Times New RomanÂð"Word.app C"yCó‰Æ
7

Properties

Name Value
svn:mime-type application/octet-stream

frodo@frodo.looijaard.name
ViewVC Help
Powered by ViewVC 1.1.26