Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

Re: Password Cracking

Subject: Re: Password Cracking
Date: Wed, 15 Sep 2004 21:38:08 +0100
Hi Fabio,

With enough time you can crack all passwords, regardless of what they
are. I won't argue that in 24h, you probably wouldn't be able to crack
something like k;!p-__f, but hey, I've added those three to my custom
passwd lists. :-)
Also, I make a general rule of generating custom passwds at least once a
week to add to various lists, it just makes it easier.

xyberpix


On Wed, 2004-09-15 at 18:44, Fabio Miranda Hamburger wrote:
To me I've always had great success with LC4 and John, it all depends
what platform I'm on at the time though, and what dictionary lists I
have loaded at the time as well, so far I haven't found a passwd that I
haven't been able to crack, yet!

You use easy to guess passwords based on letters and numbers. The
dicctionary and GECOS generated passwords are weak. If you can crack all
the passwords that host doesnt have a password policy.

Have you cracked passwords like:

k;!p-__f
"d%g..H#
^ f!)I..

You can make the passwords > 8 digits so you cant really crack all the
passwords.

fabio.
-- 
For Security and Open Source news:
http://xyberpix.demon.co.uk

Attachment: signature.asc
Description: This is a digitally signed message part

<Prev in Thread] Current Thread [Next in Thread>