473,503 Members | 2,150 Online
Bytes | Software Development & Data Engineering Community
+ Post

Home Posts Topics Members FAQ

Password without a file

Usually when we make password protected programes,we store the password
encrypted in a file.But this doesnot provide enough security and
portability.

Is there any way to store the password as a part of the .exe itself in
such a way that if a password change take place at runtime it gets
changed permenantly as if it was stored in an external file.

Feb 13 '06 #1
4 1360
On Sun, 2006-02-12 at 16:33 -0800, Vysakh P Pillai wrote:
Usually when we make password protected programes,we store the password
encrypted in a file.But this doesnot provide enough security and
portability.

Is there any way to store the password as a part of the .exe itself in
such a way that if a password change take place at runtime it gets
changed permenantly as if it was stored in an external file.


I don't know how to achieve this, but I am curious how would this
improve security? You make things a little bit more obscure, but as far
as security is concerned, it seems to be equally good (and bad) as store
it in a separate file.

Change .exe itself would have other problem, for example people allowed
to execute a file might not allowed to change it. Also the solution
would be much less portable between OS.
--
Metaosp
Feb 13 '06 #2
On 12 Feb 2006 16:33:52 -0800, "Vysakh P Pillai"
<vy**********@gmail.com> wrote:
Usually when we make password protected programes,we store the password
encrypted in a file.But this doesnot provide enough security and
portability.

Is there any way to store the password as a part of the .exe itself in
such a way that if a password change take place at runtime it gets
changed permenantly as if it was stored in an external file.


What you are proposing is completely insecure.

- If the password is within the executable, then it may be reverse
engineered by a (malicious) user of the executable

- If the executable may modify itself, then a (malicoious) user of the
executable may modify it.

So, if the user is malicious, you have got a serious security threat.
Feb 13 '06 #3
Vysakh P Pillai posted:
Usually when we make password protected programes,we store the password
encrypted in a file.But this doesnot provide enough security and
portability.

Is there any way to store the password as a part of the .exe itself in
such a way that if a password change take place at runtime it gets
changed permenantly as if it was stored in an external file.

State the executable's platform. Microsoft Windows?

If so, then look up the functions:

LockResource
LoadResource
UpdateResource

Don't reply to this post, as I won't go further off-topic.

-Tomás
Feb 13 '06 #4
Vysakh P Pillai wrote:
Usually when we make password protected programes,we store the password
encrypted in a file.But this doesnot provide enough security and
portability.

Is there any way to store the password as a part of the .exe itself in
such a way that if a password change take place at runtime it gets
changed permenantly as if it was stored in an external file.


What's your C++ question?

- J.
Feb 13 '06 #5

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

2
6959
by: Bob | last post by:
Hi, I have a website in a Linux/Apache shared hosting environment and have been given access to the MySQL server running on the same machine. To access this database from PHP, I have to call...
1
2257
by: alikhome | last post by:
Hi! May be anybody knows... I want to open word file (or Excel) from IIS server (URL) without getting security window for input Username and password. I know Username, Password and Domain. I'm...
2
1756
by: Rickard | last post by:
OK. I have the need on a form submit to pass the data to anther system that require a login and password only I want to automate the process in an server side asp file and then process the...
5
4287
by: MLH | last post by:
I'm supposed to set a password for the MySQL root user. The output of mysql_install_db instructed me to run the following commands... /usr/bin/mysqladmin -u root -h appserver password mynwewpasswd...
3
2325
by: Whitey | last post by:
I have a password secured database. After the password is entered the user has a form that I created that allows them to search the database and retrieve information. The problem is that the...
2
5995
by: Jill Elaine | last post by:
I am building an Access 2002 frontend with linked tables to an encrypted Paradox 7 database. When I first create these linked tables, I'm asked for the password to the encrypted Paradox database,...
3
13367
by: Henry | last post by:
Hi, my asp.net application is accessing a mssql on another server. This works fine when I use this in my web.config file: <add key="dbkey"...
12
11057
by: =?Utf-8?B?am9uaWdy?= | last post by:
I wrote a simple VB.NET application that imports and edits CSV files. Now I’d like to “lock” the raw (pre-import) CSV files so these cannot be opened separately. It is not high-sensitive...
20
2996
by: _mario.lat | last post by:
hallo, I use PHP and I'd like to not write in hardcoded way password and login to access to mysql. how to not write password in code for access to mysql? How can I do? I'd like that who see my...
1
2201
by: Juerg Beck | last post by:
Hello all I'm completely new to php but a complete newbie when it comes to unix. So please don't laugh about my problem. I have programmed a nice password check with php, javascript and a...
0
7287
Oralloy
by: Oralloy | last post by:
Hello folks, I am unable to find appropriate documentation on the type promotion of bit-fields when using the generalised comparison operator "<=>". The problem is that using the GNU compilers,...
0
7349
jinu1996
by: jinu1996 | last post by:
In today's digital age, having a compelling online presence is paramount for businesses aiming to thrive in a competitive landscape. At the heart of this digital strategy lies an intricately woven...
0
5594
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing,...
1
5022
isladogs
by: isladogs | last post by:
The next Access Europe User Group meeting will be on Wednesday 1 May 2024 starting at 18:00 UK time (6PM UTC+1) and finishing by 19:30 (7.30PM). In this session, we are pleased to welcome a new...
0
4688
by: conductexam | last post by:
I have .net C# application in which I am extracting data from word file and save it in database particularly. To store word all data as it is I am converting the whole word file firstly in HTML and...
0
3177
by: TSSRALBI | last post by:
Hello I'm a network technician in training and I need your help. I am currently learning how to create and manage the different types of VPNs and I have a question about LAN-to-LAN VPNs. The...
0
3168
by: adsilva | last post by:
A Windows Forms form does not have the event Unload, like VB6. What one acts like?
1
746
muto222
by: muto222 | last post by:
How can i add a mobile payment intergratation into php mysql website.
0
399
bsmnconsultancy
by: bsmnconsultancy | last post by:
In today's digital era, a well-designed website is crucial for businesses looking to succeed. Whether you're a small business owner or a large corporation in Toronto, having a strong online presence...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.