<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; Password Cracking</title>
	<atom:link href="http://www.darknet.org.uk/category/password-cracking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Thu, 19 Nov 2009 10:29:15 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Katana v1 (Kyuzo) &#8211; Portable Multi-Boot Security Suite</title>
		<link>http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/</link>
		<comments>http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/#comments</comments>
		<pubDate>Tue, 17 Nov 2009 09:46:28 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[auditing]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[boot from usb]]></category>
		<category><![CDATA[damn small linux]]></category>
		<category><![CDATA[damn-vulnerable-linux]]></category>
		<category><![CDATA[dvl]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[got root]]></category>
		<category><![CDATA[hack from a cave]]></category>
		<category><![CDATA[hackfromacave]]></category>
		<category><![CDATA[hijackthis]]></category>
		<category><![CDATA[honey pots]]></category>
		<category><![CDATA[katana kyuzo]]></category>
		<category><![CDATA[katana v1]]></category>
		<category><![CDATA[mult-boot security distro]]></category>
		<category><![CDATA[ollydbg]]></category>
		<category><![CDATA[Ophcrack]]></category>
		<category><![CDATA[ophcrack live]]></category>
		<category><![CDATA[oswa]]></category>
		<category><![CDATA[pen-testing]]></category>
		<category><![CDATA[penetration-testing]]></category>
		<category><![CDATA[UBCD]]></category>
		<category><![CDATA[unstoppble copier]]></category>
		<category><![CDATA[usb security tools]]></category>
		<category><![CDATA[wireshark]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2298</guid>
		<description><![CDATA[The Katana: Portable Multi-Boot Security Suite is designed to fulfill many of your computer security needs. The idea behind this tool is to bring together many of the best security distributions and applications to run from one USB Flash Drive.  Instead of keeping track of dozens of CDs and DVDs loaded with your favorite [...]]]></description>
			<content:encoded><![CDATA[<p>The Katana: Portable Multi-Boot Security Suite is designed to fulfill many of your computer security needs. The idea behind this tool is to bring together many of the best security distributions and applications to run from one USB Flash Drive.  Instead of keeping track of dozens of CDs and DVDs loaded with your favorite security tools, you can keep them all conveniently in your pocket.</p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p>Katana includes distributions which focus on Penetration Testing, Auditing, Password Cracking, Forensics and Honey Pots. Katana comes with over 100 portable Windows applications, such as Wireshark, HiJackThis, Unstoppable Copier, Firefox, and OllyDBG.  It also includes the following distributions:</p>
<ul>
<li>Backtrack 4 pre</li>
<li>the Ultimate Boot CD</li>
<li>Ophcrack Live</li>
<li>Damn Small Linux</li>
<li>the Ultimate Boot CD for Windows</li>
<li>Got Root? Slax</li>
<li>Organizational Systems Wireless Auditor (OSWA) Assistant</li>
<li>Damn Vulnerable Linux</li>
</ul>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p>Katana is also highly customizable.  You can modify Katana by adding or removing distributions and portable apps with ease.  You can add functionality to distributions like the Ultimate Boot CD, Got Root? Slax and UBCD4Win.  You can also load your personal scripts and documents to keep them conveniently with<br />
you on your flash drive to use in concert with the provided tools.</p>
<p>You can download Katana v1 here:</p>
<p><a href="http://gextrade.thegoodhacker.com/katana/katana-v1.rar">katana-v1.rar</a></p>
<p>Or read more <a href="http://www.hackfromacave.com/katana.html">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Katana+v1+%28Kyuzo%29+%E2%80%93+Portable+Multi-Boot+Security+Suite+http://bit.ly/274uxG+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/&amp;title=Katana+v1+%28Kyuzo%29+%E2%80%93+Portable+Multi-Boot+Security+Suite" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/&amp;title=Katana+v1+%28Kyuzo%29+%E2%80%93+Portable+Multi-Boot+Security+Suite" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/&amp;t=Katana+v1+%28Kyuzo%29+%E2%80%93+Portable+Multi-Boot+Security+Suite" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/&amp;title=Katana+v1+%28Kyuzo%29+%E2%80%93+Portable+Multi-Boot+Security+Suite" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/11/katana-v1-kyuzo-portable-multi-boot-security-suite/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Cain &amp; Abel v4.9.35 &#8211; Password Sniffer, Cracker and Brute-Forcing Tool</title>
		<link>http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/</link>
		<comments>http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/#comments</comments>
		<pubDate>Thu, 12 Nov 2009 06:47:31 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[abel]]></category>
		<category><![CDATA[arp poison routing]]></category>
		<category><![CDATA[arp sniffer]]></category>
		<category><![CDATA[arp spoofing tool]]></category>
		<category><![CDATA[arp-spoofing]]></category>
		<category><![CDATA[brute forcing tool]]></category>
		<category><![CDATA[brute-force]]></category>
		<category><![CDATA[brute-forcing]]></category>
		<category><![CDATA[cain]]></category>
		<category><![CDATA[cain&abel]]></category>
		<category><![CDATA[cain-&-abel]]></category>
		<category><![CDATA[Cain-and-Abel]]></category>
		<category><![CDATA[cracking passwords]]></category>
		<category><![CDATA[network-cracker]]></category>
		<category><![CDATA[network-cracking]]></category>
		<category><![CDATA[network-sniffing]]></category>
		<category><![CDATA[password cracking tool]]></category>
		<category><![CDATA[password decoder]]></category>
		<category><![CDATA[password-cracker]]></category>
		<category><![CDATA[Windows Hacking]]></category>
		<category><![CDATA[windows hacking tool]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2234</guid>
		<description><![CDATA[It&#8217;s been quite a while since we&#8217;ve written about Cain &#038; Abel, one of the most powerful tools for the Windows platform (back in 2007 here).
Cain &#038; Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been quite a while since we&#8217;ve written about Cain &#038; Abel, one of the most powerful tools for the Windows platform (back in 2007 <a href="http://www.darknet.org.uk/2007/01/cain-abel-download-the-super-fast-and-flexible-password-cracker-with-network-sniffing/">here</a>).</p>
<p>Cain &#038; Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols. The program does not exploit any software vulnerabilities or bugs that could not be fixed with little effort. It covers some security aspects/weakness present in protocol&#8217;s standards, authentication methods and caching mechanisms; its main purpose is the simplified recovery of passwords and credentials from various sources, however it also ships some &#8220;non standard&#8221; utilities for Microsoft Windows users.</p>
<p><!--adsense#New468--></p>
<p>Cain &#038; Abel has been developed in the hope that it will be useful for network administrators, teachers, security consultants/professionals, forensic staff, security software vendors, professional penetration tester and everyone else that plans to use it for ethical reasons. The author will not help or support any illegal activity done with this program. Be warned that there is the possibility that you will cause damages and/or loss of data using this software and that in no events shall the author be liable for such damages or loss of data. Please carefully read the License Agreement included in the program before using it.</p>
<p>The latest version is faster and contains a lot of new features like APR (Arp Poison Routing) which enables sniffing on switched LANs and Man-in-the-Middle attacks. The sniffer in this version can also analyze encrypted protocols such as SSH-1 and HTTPS, and contains filters to capture credentials from a wide range of authentication mechanisms. The new version also ships routing protocols authentication monitors and routes extractors, dictionary and brute-force crackers for all common hashing algorithms and for several specific authentications, password/hash calculators, cryptanalysis attacks, password decoders and  some not so common utilities related to network and system security.</p>
<p><!--adsense#New468--></p>
<p>Most recently added is the support for Windows 2008 Terminal Server in APR-RDP sniffer filter.</p>
<p>You can download Cain &#038; Abel v4.9.35 here:</p>
<p><a href="http://www.oxid.it/downloads/ca_setup.exe">ca_setup.exe</a></p>
<p>Or read more <a href="http://www.oxid.it/cain.html">here</a>, the online user manual is <a href="http://www.oxid.it/ca_um/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Cain+%26+Abel+v4.9.35+%E2%80%93+Password+Sniffer%2C+Cracker+and+Brute-Forcing+Tool+http://bit.ly/1MhNoy+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/&amp;title=Cain+%26+Abel+v4.9.35+%E2%80%93+Password+Sniffer%2C+Cracker+and+Brute-Forcing+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/&amp;title=Cain+%26+Abel+v4.9.35+%E2%80%93+Password+Sniffer%2C+Cracker+and+Brute-Forcing+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/&amp;t=Cain+%26+Abel+v4.9.35+%E2%80%93+Password+Sniffer%2C+Cracker+and+Brute-Forcing+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/&amp;title=Cain+%26+Abel+v4.9.35+%E2%80%93+Password+Sniffer%2C+Cracker+and+Brute-Forcing+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/11/cain-abel-v4-9-35-password-sniffer-cracker-and-brute-forcing-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Using Cloud Computing To Crack Passwords &#8211; Amazon&#8217;s EC2</title>
		<link>http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/</link>
		<comments>http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/#comments</comments>
		<pubDate>Tue, 03 Nov 2009 10:07:29 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[amazon ec2]]></category>
		<category><![CDATA[Amazon Elastic Compute Cloud]]></category>
		<category><![CDATA[black hat conference]]></category>
		<category><![CDATA[black-hat]]></category>
		<category><![CDATA[brute-force]]></category>
		<category><![CDATA[brute-forcing]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[david campbell]]></category>
		<category><![CDATA[ec2]]></category>
		<category><![CDATA[haroon meer]]></category>
		<category><![CDATA[password-hacking]]></category>
		<category><![CDATA[password-security]]></category>
		<category><![CDATA[sensepost]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2258</guid>
		<description><![CDATA[Now this is interesting a proper mathematical calculation for using cloud computing to crack passwords, now Amazon has opened up their EC2 (Elastic Compute Cloud) the cost of massive parallel processing power has come right down.
And guess what, someone thought of using it to crack passwords. It seems the cut-off would be a 12 character [...]]]></description>
			<content:encoded><![CDATA[<p>Now this is interesting a proper mathematical calculation for using cloud computing to crack passwords, now Amazon has opened up their <a href="http://aws.amazon.com/ec2/">EC2 (Elastic Compute Cloud)</a> the cost of massive parallel processing power has come right down.</p>
<p>And guess what, someone thought of using it to crack passwords. It seems the cut-off would be a 12 character password as even with all lower case characters it would cost USD1.5 million to crack.</p>
<p>It gets exponentially cheaper as you remove each character (due to the calculation using the power of the number of characters) so a 10 character password would only cost you just over USD2000!</p>
<p><!--adsense#New468--></p>
<blockquote><p>Forget what you&#8217;ve learned about password security. A simple pass code with nothing more than lower-case letters may be all you need &#8211; provided you use 12 characters.</p>
<p>That&#8217;s the conclusion of security consultant David Campbell, who calculated the cost of waging a brute-force attack on various types of passwords using cloud computing services offered by Amazon.</p>
<p>Based on hourly fees Amazon charges for its EC2 web service, it would cost more than $1.5m to brute force a 12-character password containing nothing more than lower-case letters a through z. But user beware, an 11-character code costs less than $60,000 to crack, and a 10-letter phrase costs less than $2,300.</p>
<p>Adding upper-case letters and numbers to a password offers some additional security, but not as much as you might think. Such a phrase using 10 characters would cost less than $60,000 to attack, while an 11-character code would cost roughly $2.1m. Even passwords that contain an additional 32 characters such as !@#$% are relatively cheap to crack if they are short enough. An eight-character password would cost a little more than $106,000.</p></blockquote>
<p>I&#8217;d say adding upper case letters and numbers makes quite a difference, a 10 character passwords jumps from just over USD2000 to crack all the way up to USD60,000. That&#8217;s a factor of 30!</p>
<p>I&#8217;d say a 10 character password containing uppercase, lowercase, numbers and specials characters should be well into the millions and keep you fairly safe.</p>
<p>I did write some guidelines and tips on creating a secure password a while back, you can check it out here &#8211; <a href="http://www.darknet.org.uk/2006/04/good-password-guidelines-how-to-make-a-strongsecure-password/">Good Password Guidelines – How to Make a Strong/Secure Password</a>.</p>
<p><!--adsense#New468--></p>
<blockquote><p>The analysis, which Campbell posted <a href="http://news.electricalchemy.net/2009/10/password-cracking-in-cloud-part-5.html">here</a>, builds off of research fellow security consultant Haroon Meer of SensePost <a href="http://www.blackhat.com/html/bh-usa-09/bh-usa-09-speakers.html#thumb">presented earlier this year</a> at the Black Hat conference. In it, he showed how EC2 could provide criminals using stolen credit cards with the equivalent of a super computer to crack encryption keys and passwords.</p>
<p>And that, in turn, will require new ways of thinking on the part of white hats.</p>
<p>&#8220;As it becomes possible now for the black hat community to get their hands on large amounts of computing power, we as security professionals are going to need to reassess threat models that we thought previously were not a factor,&#8221; said Campbell. &#8220;Using stolen credit cards, they could create a super computer that would be faster potentially than what the three-letter agencies have and they wouldn&#8217;t be paying for the CPU cycles.&#8221;</p>
<p>Although Amazon takes pains to ration resources it makes available to single customers, Meer showed it was possible to get around such limitations using a single credit card. Presumably, it would be even easier to bypass those controls using hundreds or thousands of stolen credit cards, something that is trivial for criminals to get a hold of. Campbell&#8217;s assumptions are based on simple arithmetic.</p></blockquote>
<p>It&#8217;s interesting research nevertheless, I&#8217;d say Cloud Computing is only going to get more powerful and cheaper to rent so character based passwords may become completely defunct at some point in the future.</p>
<p>The computing power is not at the point where you have to worry about your 1024 bit RSA encryption quite yet, but it may well be in the near future as it&#8217;s already advised to use a 2048 bit key length!</p>
<p>Combining this platform with the abundance of stolen credit card details the blackhats have could be quite devastating.</p>
<p>Source: <a href="http://www.theregister.co.uk/2009/11/02/amazon_cloud_password_cracking/">The Register</a></p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Using+Cloud+Computing+To+Crack+Passwords+%E2%80%93+Amazon%E2%80%99s+EC2+http://bit.ly/39lQmD+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/&amp;title=Using+Cloud+Computing+To+Crack+Passwords+%E2%80%93+Amazon%E2%80%99s+EC2" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/&amp;title=Using+Cloud+Computing+To+Crack+Passwords+%E2%80%93+Amazon%E2%80%99s+EC2" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/&amp;t=Using+Cloud+Computing+To+Crack+Passwords+%E2%80%93+Amazon%E2%80%99s+EC2" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/&amp;title=Using+Cloud+Computing+To+Crack+Passwords+%E2%80%93+Amazon%E2%80%99s+EC2" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/11/using-cloud-computing-to-crack-passwords-amazons-ec2/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>KrbGuess &#8211; Guess/Enumerate Kerberos User Accounts</title>
		<link>http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/</link>
		<comments>http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/#comments</comments>
		<pubDate>Thu, 29 Oct 2009 07:16:52 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[active directory security]]></category>
		<category><![CDATA[active-directory-hacking]]></category>
		<category><![CDATA[brute forcing kerberos]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[heimdal kerberos]]></category>
		<category><![CDATA[kdc]]></category>
		<category><![CDATA[kerberos]]></category>
		<category><![CDATA[kerberos domain controller]]></category>
		<category><![CDATA[kerberos hacking]]></category>
		<category><![CDATA[kerberos security]]></category>
		<category><![CDATA[krbguess]]></category>
		<category><![CDATA[network-security]]></category>
		<category><![CDATA[password-hacking]]></category>
		<category><![CDATA[password-security]]></category>
		<category><![CDATA[Windows Hacking]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2232</guid>
		<description><![CDATA[KrbGuess is a small and simple tool which can be used during security testing to guess valid usernames against a Kerberos environment. It allows you to do this by studying the response from a TGT request to the KDC server. The tool works against both Microsoft Active Directory, MIT and Heimdal Kerberos implementations. In addition [...]]]></description>
			<content:encoded><![CDATA[<p>KrbGuess is a small and simple tool which can be used during security testing to guess valid usernames against a Kerberos environment. It allows you to do this by studying the response from a TGT request to the KDC server. The tool works against both Microsoft Active Directory, MIT and Heimdal Kerberos implementations. In addition it will detect if an account lacks pre-authentication.</p>
<p><!--adsense#New468--></p>
<p>The tool is supplied with a file containing a list of usernames and requests a TGT for each user and then waits for the response. If the KDC responds with a valid TGT or with an error message stating that pre-authentication is required, a valid username has been discovered. Several guesses can be run in parallel (currently only against a single KDC) in order to improve performance.</p>
<p>Be careful not to run with to many threads and low timeouts  as it will bring the KDC to its knees during the time of the test. The default values have been tuned against a virtual machine, and currently eat somewhere around 80% CPU which gives me roughly 700 guesses per second. In most cases the network throughput won’t be the performance bottleneck. So far I’m seeing that 2-3MBit of queries is generating a sustained 100% CPU load against both Heimdal on Ubuntu and Windows 2003.</p>
<p><!--adsense#New468--></p>
<p>The tool is written in Java and does not rely on any Kerberos libraries to perform the guessing. In order to successfully run the tool against a system it needs at least the realm, dictionary and a server parameters to be set. eg.</p>
<pre><code>java -jar krbguess.jar -s 192.168.56.11 -r HEMMA \ -o report.txt -d ./dic.txt</code></pre>
<p>You can download KrbGuess here:</p>
<p><a href="http://www.cqure.net/tools/krbguess-0.21-bin.tar.gz">krbguess-0.21-bin.tar.gz</a></p>
<p>Or read more <a href="http://www.cqure.net/wp/krbguess/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=KrbGuess+%E2%80%93+Guess%2FEnumerate+Kerberos+User+Accounts+http://bit.ly/24CYDp+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/&amp;title=KrbGuess+%E2%80%93+Guess%2FEnumerate+Kerberos+User+Accounts" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/&amp;title=KrbGuess+%E2%80%93+Guess%2FEnumerate+Kerberos+User+Accounts" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/&amp;t=KrbGuess+%E2%80%93+Guess%2FEnumerate+Kerberos+User+Accounts" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/&amp;title=KrbGuess+%E2%80%93+Guess%2FEnumerate+Kerberos+User+Accounts" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/10/krbguess-guessenumerate-kerberos-user-accounts/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>crack.pl &#8211; SHA1 &amp; MD5 Hash Cracking Tool</title>
		<link>http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/</link>
		<comments>http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/#comments</comments>
		<pubDate>Wed, 29 Jul 2009 10:45:10 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[crack.pl]]></category>
		<category><![CDATA[cracking hashes]]></category>
		<category><![CDATA[hash cracker]]></category>
		<category><![CDATA[md5 cracker]]></category>
		<category><![CDATA[md5 hash cracker]]></category>
		<category><![CDATA[md5 password cracker]]></category>
		<category><![CDATA[password cracking tool]]></category>
		<category><![CDATA[password-cracker]]></category>
		<category><![CDATA[sha1 cracker]]></category>
		<category><![CDATA[sha1 hash cracker]]></category>
		<category><![CDATA[sha1 password cracker]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1962</guid>
		<description><![CDATA[crack.pl is a tool for cracking SHA1 &#038; MD5 hashes, including a new BETA tool which can crack MD5 that have been salted. You can use a dictionary file or bruteforce and it can be used to generate tables itself.
NOTE &#8211; Salt function is currently only available for md5, you need to append &#8216;\&#8217; infront [...]]]></description>
			<content:encoded><![CDATA[<p>crack.pl is a tool for cracking SHA1 &#038; MD5 hashes, including a new BETA tool which can crack MD5 that have been salted. You can use a dictionary file or bruteforce and it can be used to generate tables itself.</p>
<p><em>NOTE &#8211; Salt function is currently only available for md5, you need to append &#8216;\&#8217; infront of every $ while lookingup or cracking salted hash</em></p>
<p><!--adsense#New468--></p>
<p>General Usage and examples :<br />
	./crack.pl <hash to crack | table> <dictionary file |bruteforce> [sha1|md5|lookup|salt] [salt]<br />
	./crack.pl \$1\$killme\$TVUPnlxfX62j2D/fUVRqp1 bruteforce<br />
	./crack.pl 15191b869d2918ebeb0409dbee90f201 /pentest/wireless/cowpatty/dict<br />
	./crack.pl 15191b869d2918ebeb0409dbee90f201 bruteforce<br />
	./crack.pl 087e086132b9fb3b9c938ab646a4891b365c2f08 /pentest/wireless/cowpatty/dict<br />
	./carck.pl 087e086132b9fb3b9c938ab646a4891b365c2f08 bruteforce<br />
	./crack.pl table /pentest/wireless/cowpatty/dict md5 > table.md5<br />
	./crack.pl table /pentest/wireless/cowpatty/dict sha1 > table.sha1<br />
	./crack.pl table bruteforce md5 > bigtable.md5<br />
	./crack.pl table bruteforce sha1 > bigtable.sha1<br />
	./crack.pl table bruteforce md5 mysalt > table.mysalt</p>
<p>After generating a table you will need to remove any duplicates(if any). But there will be very little or none so this step is unnecessary and this step wll take a long time to run. Running the following will do that</p>
<pre><code>sort -u &lt;table name&gt; -o &lt;sorted table&gt;</code></pre>
<p>If you don&#8217;t mind some few errors in trade for space, open the source file and change $savespace=0 to $savespace=1. This will cause only the first 5 bytes of the hash to be stored and as such some two or more passwords may have the same beginning. To look up a hash,use the lookup feature.</p>
<pre><code>./crack.pl &lt;hash&gt;&lt;table&gt; lookup</code></pre>
<p>This will find all possible passwords and compute the correct one, please note that fat32 system will store up to 4GB only. While generating a table the software will start from &#8216;aaaaaa&#8217; onwards (six letters and up).<br />
Less than six letter password is cracked within minutes (four minutes on mine;) ).</p>
<p><!--adsense#New468--></p>
<p><strong>crack_salted.pl</strong></p>
<p>This will crack md5 hashes of salted hash. The results are displayed within &#8217;singe ticks&#8217;.</p>
<p>TIP	: most applications set the salt as the username <img src='http://www.darknet.org.uk/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
	: I made a program to generate random strings (genrandom.pl) the list there should definitely pass through sorting and there is absolutly no guarantee that the salt/pass will be included</p>
<pre><code>./crack_salted.pl &lt;hash&gt; &lt;salt|-f salt_file&gt; &lt;method&gt;</code></pre>
<p>This is still in development</p>
<p><strong>Installing Crypt::PasswdMD5</strong></p>
<p>(a windows copy of make may be downloaded from http://gnuwin32.sourceforge.net/packages/make.htm)<br />
$ cd Crypt-PasswdMD5<br />
$ perl Makefile.PL<br />
$ make<br />
$ make test</p>
<p>You can download crack BETA 6 here:</p>
<p><a href="http://kalgecin.googlecode.com/files/crack.zip">crack.zip</a></p>
<p>Or preferably use the SVN.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=crack.pl+%E2%80%93+SHA1+%26+MD5+Hash+Cracking+Tool+http://bit.ly/BZiIK+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/&amp;title=crack.pl+%E2%80%93+SHA1+%26+MD5+Hash+Cracking+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/&amp;title=crack.pl+%E2%80%93+SHA1+%26+MD5+Hash+Cracking+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/&amp;t=crack.pl+%E2%80%93+SHA1+%26+MD5+Hash+Cracking+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/&amp;title=crack.pl+%E2%80%93+SHA1+%26+MD5+Hash+Cracking+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/07/crack-pl-sha1-md5-hash-cracking-tool/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>MultiISO LiveDVD v1.0 &#8211; BackTrack, Knoppix &amp; Ophcrack</title>
		<link>http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/</link>
		<comments>http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/#comments</comments>
		<pubDate>Tue, 07 Jul 2009 11:05:33 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Linux Hacking]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[byzantine os]]></category>
		<category><![CDATA[dsl]]></category>
		<category><![CDATA[dvl]]></category>
		<category><![CDATA[gexbox]]></category>
		<category><![CDATA[knoppix]]></category>
		<category><![CDATA[live dvd]]></category>
		<category><![CDATA[live security dvd]]></category>
		<category><![CDATA[livedvd]]></category>
		<category><![CDATA[mpentoo]]></category>
		<category><![CDATA[multi iso dvd]]></category>
		<category><![CDATA[multiiso]]></category>
		<category><![CDATA[Ophcrack]]></category>
		<category><![CDATA[puppy linux]]></category>
		<category><![CDATA[security live dvd]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1917</guid>
		<description><![CDATA[MultiISO LiveDVD is an integrated Live DVD technology which combines some of the very popular Live CD ISOs already available on the internet. It can be used for security reconnaissance, vulnerability identification, penetration testing, system rescue, media center and multimedia, system recovery, etc. It&#8217;s a all-in-one multipurpose LiveDVD put together. There&#8217;s something in it for [...]]]></description>
			<content:encoded><![CDATA[<p>MultiISO LiveDVD is an integrated Live DVD technology which combines some of the very popular Live CD ISOs already available on the internet. It can be used for security reconnaissance, vulnerability identification, penetration testing, system rescue, media center and multimedia, system recovery, etc. It&#8217;s a all-in-one multipurpose LiveDVD put together. There&#8217;s something in it for everyone.</p>
<p><!--adsense#New468--></p>
<p>MultiISO LiveDVD Version 1.0 consists of:</p>
<ul>
<li>Backtrack 3</li>
<li>Damn Small Linux (DSL) 4.2.5</li>
<li>GeeXboX 1.1</li>
<li>Damn Vulnerable Linux (Strychnine) 1.4 edition</li>
<li>Knoppix 5.1.1, MPentoo 2006.1</li>
<li>Ophcrack 1.2.2 (remastered to contain SSTIC04-5k [720MB] table sets)</li>
<li>
Puppy Linux 3.01</li>
<li>Byzantine OS i586-20040404</li>
</ul>
<p><!--adsense#New468--></p>
<p>You can download MultiISO LiveDVD here (to conserve bandwidth only a Torrent link is available, please seed after downloading):</p>
<p>Torrent: <a href="http://badfoo.net/linux/EmErgEs_MultiBOOT_ISO.torrent.torrent">EmErgEs_MultiBOOT_ISO.torrent</a> (4.03GB)</p>
<p>MD5SUM: 1b1f37ed6b6f958cde0529a8a1f06637<br />
SHA1SUM: 593ffbfa3c4b665220dcd63b2e4b77bacde5237d</p>
<p>Or read more <a href="http://badfoo.net/emerge/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=MultiISO+LiveDVD+v1.0+%E2%80%93+BackTrack%2C+Knoppix+%26+Ophcrack+http://bit.ly/qceoW+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/&amp;title=MultiISO+LiveDVD+v1.0+%E2%80%93+BackTrack%2C+Knoppix+%26+Ophcrack" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/&amp;title=MultiISO+LiveDVD+v1.0+%E2%80%93+BackTrack%2C+Knoppix+%26+Ophcrack" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/&amp;t=MultiISO+LiveDVD+v1.0+%E2%80%93+BackTrack%2C+Knoppix+%26+Ophcrack" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/&amp;title=MultiISO+LiveDVD+v1.0+%E2%80%93+BackTrack%2C+Knoppix+%26+Ophcrack" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/07/multiiso-livedvd-v1-0-backtrack-knoppix-ophcrack/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Kon-Boot &#8211; Reset Windows &amp; Linux Passwords</title>
		<link>http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/</link>
		<comments>http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/#comments</comments>
		<pubDate>Tue, 30 Jun 2009 09:06:30 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Linux Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[Windows Hacking]]></category>
		<category><![CDATA[forgot linux password]]></category>
		<category><![CDATA[forgot windows password]]></category>
		<category><![CDATA[kon boot]]></category>
		<category><![CDATA[konboot]]></category>
		<category><![CDATA[lost linux password]]></category>
		<category><![CDATA[lost root password]]></category>
		<category><![CDATA[lost windows password]]></category>
		<category><![CDATA[password reset]]></category>
		<category><![CDATA[password reset tool]]></category>
		<category><![CDATA[reset linux password]]></category>
		<category><![CDATA[reset linux root password]]></category>
		<category><![CDATA[reset windows password]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1900</guid>
		<description><![CDATA[Kon-Boot is an prototype piece of software which allows to change contents of a Linux kernel (and now Windows kernel also!!!) on the fly (while booting). 
In the current compilation state it allows to log into a Linux system as ’root’ user without typing the correct password or to elevate privileges from current user to [...]]]></description>
			<content:encoded><![CDATA[<p>Kon-Boot is an prototype piece of software which allows to change contents of a Linux kernel (and now Windows kernel also!!!) on the fly (while booting). </p>
<p>In the current compilation state it allows to log into a Linux system as ’<em>root</em>’ user without typing the correct password or to elevate privileges from current user to root. For Windows systems it allows to enter any password protected profile without any knowledge of the password. </p>
<p><!--adsense#New468--></p>
<p>It was mainly created for Ubuntu, later the author has made a few add-ons to cover some other Linux distributions.</p>
<p>Entire Kon-Boot was written in pure x86 assembly, using old grandpa-geezer TASM 4.0.</p>
<p><strong>Latest Updates – Kon-Boot for Windows</strong></p>
<p>Kon-Boot was moved to Windows platforms. So now it provides support for Microsoft Windows systems and also the Linux systems listed below. Kon-Boot for Windows enables logging in to any password protected machine profile without without any knowledge of the password. This tool changes the contents of Windows kernel while booting, everything is done virtually – without any interferences with physical system changes. So far following systems were tested to work correctly with Kon-Boot:</p>
<ul>
<li>Windows Server 2008 Standard SP2 (v.275)</li>
<li>Windows Vista Business SP0</li>
<li>Windows Vista Ultimate SP1</li>
<li>Windows Vista Ultimate SP0</li>
<li>Windows Server 2003 Enterprise</li>
<li>Windows XP</li>
<li>
Windows XP SP1</li>
<li>Windows XP SP2</li>
<li>Windows XP SP3</li>
<li>Windows 7</li>
</ul>
<p><!--adsense#New468--></p>
<p>No special usage instructions are required for Windows users, just boot from Kon-Boot CD/Floppy, select your profile and put any password you want. You lost your password? Now it doesnt matter at all.</p>
<p>It has been tested with the following Linux distributions:</p>
<ul>
<li>Gentoo 2.6.24-gentoo-r5 	GRUB 0.97</li>
<li>Ubuntu 2.6.24.3-debug 	GRUB 0.97</li>
<li>Debian 2.6.18-6-6861 	GRUB 0.97</li>
<li>Fedora 2.6.25.9-76.fc9.i6862 	GRUB 0.97</li>
</ul>
<p>You can download Kon-Boot here:</p>
<p>Floppy Image &#8211; <a href="http://www.piotrbania.com/all/kon-boot/data/FD0-konboot-v1.1-2in1.zip">FD0-konboot-v1.1-2in1.zip</a><br />
CD ISO Image &#8211; <a href="http://www.piotrbania.com/all/kon-boot/data/CD-konboot-v1.1-2in1.zip">CD-konboot-v1.1-2in1.zip</a></p>
<p>Or read more <a href="http://www.piotrbania.com/all/kon-boot/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Kon-Boot+%E2%80%93+Reset+Windows+%26+Linux+Passwords+http://bit.ly/PZGKc+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/&amp;title=Kon-Boot+%E2%80%93+Reset+Windows+%26+Linux+Passwords" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/&amp;title=Kon-Boot+%E2%80%93+Reset+Windows+%26+Linux+Passwords" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/&amp;t=Kon-Boot+%E2%80%93+Reset+Windows+%26+Linux+Passwords" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/&amp;title=Kon-Boot+%E2%80%93+Reset+Windows+%26+Linux+Passwords" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/06/kon-boot-reset-windows-linux-passwords/feed/</wfw:commentRss>
		<slash:comments>17</slash:comments>
		</item>
		<item>
		<title>EFIPW &#8211; Modify Apple EFI Firmware Passwords</title>
		<link>http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/</link>
		<comments>http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/#comments</comments>
		<pubDate>Wed, 22 Apr 2009 09:43:10 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Hardware Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[apple efi firmware]]></category>
		<category><![CDATA[apple efi password]]></category>
		<category><![CDATA[apple efi passwords]]></category>
		<category><![CDATA[apple efi security]]></category>
		<category><![CDATA[efi password]]></category>
		<category><![CDATA[efipw]]></category>
		<category><![CDATA[hacking apple efi]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1712</guid>
		<description><![CDATA[EFIPW is a tool that can be used to decode and modify Apple EFI firmware passwords via the command line.  It is designed after the non open source OFPW utility and is designed to work on Intel machines running Leopard or newer.  Useful for lab deployments (setting the firmware password of machines as [...]]]></description>
			<content:encoded><![CDATA[<p>EFIPW is a tool that can be used to decode and modify Apple EFI firmware passwords via the command line.  It is designed after the non open source OFPW utility and is designed to work on Intel machines running Leopard or newer.  Useful for lab deployments (setting the firmware password of machines as a post install item) and pen tests (recovering the EFI firmware password).</p>
<p><!--adsense#New468--></p>
<p><strong>Tested on:</strong></p>
<ul>
<li>Core Duo (1st gen) Macbook Pro 15&#8243;</li>
<li>Core 2 Duo Macbook Pro 15&#8243; </li>
</ul>
<p>Technical details on how it works <a href="http://paulmakowski.blogspot.com/2009/03/apple-efi-firmware-passwords.html">here</a>.</p>
<p>You can download EFIPW v0.1a here:</p>
<p><a href="http://efipw.googlecode.com/files/efipw_v0.1a.zip">efipw_v0.1a.zip</a></p>
<p>Or read more <a href="http://code.google.com/p/efipw/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=EFIPW+%E2%80%93+Modify+Apple+EFI+Firmware+Passwords+http://bit.ly/31LoM8+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/&amp;title=EFIPW+%E2%80%93+Modify+Apple+EFI+Firmware+Passwords" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/&amp;title=EFIPW+%E2%80%93+Modify+Apple+EFI+Firmware+Passwords" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/&amp;t=EFIPW+%E2%80%93+Modify+Apple+EFI+Firmware+Passwords" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/&amp;title=EFIPW+%E2%80%93+Modify+Apple+EFI+Firmware+Passwords" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/04/efipw-modify-apple-efi-firmware-passwords/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Medusa v1.5 Released &#8211; Parallel, Modular Login Brute Forcing Tool</title>
		<link>http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/</link>
		<comments>http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/#comments</comments>
		<pubDate>Wed, 04 Mar 2009 07:32:21 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[brute forcing tool]]></category>
		<category><![CDATA[brute-force]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[medusa]]></category>
		<category><![CDATA[medusa password cracker]]></category>
		<category><![CDATA[medusa v1.5]]></category>
		<category><![CDATA[medusa version 1.5]]></category>
		<category><![CDATA[password cracking tool]]></category>
		<category><![CDATA[password-cracker]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1546</guid>
		<description><![CDATA[Finally an update to Medusa! Version 1.5 of Medusa is now available for public download. Medusa 1.4 was released quite some time back in November 2007 and before that Medusa 1.3 showed up November 2006.
You would have thought version 1.5 would have been released in November 2008! Looks like they missed by a few months.

What [...]]]></description>
			<content:encoded><![CDATA[<p>Finally an update to Medusa! Version 1.5 of Medusa is now available for public download. <a href="http://www.darknet.org.uk/2007/11/medusa-14-parallel-password-cracker-released-for-download/">Medusa 1.4</a> was released quite some time back in November 2007 and before that <a href="http://www.darknet.org.uk/2006/11/medusa-fast-parallel-password-cracker-13-released/">Medusa 1.3</a> showed up November 2006.</p>
<p>You would have thought version 1.5 would have been released in November 2008! Looks like they missed by a few months.</p>
<p><!--adsense#New468--></p>
<p><strong>What is Medusa?</strong></p>
<p>Medusa is a speedy, massively parallel, modular, login brute-forcer for network services. Some of the key features of Medusa are: </p>
<ul>
<li><strong>Thread-based parallel testing</strong>. Brute-force testing can be performed against multiple hosts, users or passwords concurrently.</li>
<li><strong>Flexible user input.</strong> Target information (host/user/password) can be specified in a variety of ways. For example, each item can be either a single entry or a file containing multiple entries. Additionally, a combination file format allows the user to refine their target listing.</li>
<li><strong>Modular design.</strong> Each service module exists as an independent .mod file. This means that no modifications are necessary to the core application in order to extend the supported list of services for brute-forcing. </li>
</ul>
<p>It currently has modules for the following services:</p>
<ul>
<li>AFP</li>
<li>CVS</li>
<li>FTP</li>
<li>HTTP</li>
<li>IMAP</li>
<li>MS-SQL</li>
<li>MySQL</li>
<li>NCP (NetWare)</li>
<li>NNTP</li>
<li>PcAnywhere</li>
<li>POP3</li>
<li>PostgreSQL</li>
<li>rexec</li>
<li>rlogin</li>
<li>rsh</li>
<li>SMB</li>
<li>SMTP (AUTH/VRFY)</li>
<li>SNMP</li>
<li>SSHv2</li>
<li>SVN</li>
<li>Telnet</li>
<li>
VmAuthd</li>
<li>VNC</li>
</ul>
<p>It also includes a basic web form module and a generic wrapper module for external scripts.</p>
<p>While Medusa was designed to serve the same purpose as THC-Hydra, there are several significant differences &#8211; you can see a brief comparison <a href="http://www.foofus.net/jmk/medusa/medusa-compare.html">here</a>.</p>
<p><!--adsense#New468--></p>
<p>It&#8217;s been over a year since version 1.4 was released and there has been a bunch of changes. This release includes multiple bug fixes, several new modules and additional module functionality. The following is a quick rundown on some of the new features, if you wish to see a detailed <a href="http://www.foofus.net/jmk/medusa/ChangeLog">ChangeLog it&#8217;s here</a>.</p>
<ul>
<li>AFP &#8211; new module (still marked as unstable)</li>
<li>HTTP &#8211; digest auth support</li>
<li>IMAP &#8211; STARTTLS, NTLM support</li>
<li>POP3 &#8211; STARTTLS, LOGIN, PLAIN, NTLM support</li>
<li>SMBNT &#8211; LM, LMv2, NTLMv2 support</li>
<li>SMTP &#8211; NTLM support</li>
<li>TELNET &#8211; AS/400 (TN5250) support</li>
<li>
misc. core and module bug fixes</li>
</ul>
<p>You can download Medusa v1.5 here:</p>
<p><a href="http://www.foofus.net/jmk/tools/medusa-1.5.tar.gz">medusa-1.5.tar.gz</a></p>
<p>Or read more <a href="http://www.foofus.net/jmk/medusa/medusa.html">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=Medusa+v1.5+Released+%E2%80%93+Parallel%2C+Modular+Login+Brute+Forcing+Tool+http://bit.ly/1SPeUe+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/&amp;title=Medusa+v1.5+Released+%E2%80%93+Parallel%2C+Modular+Login+Brute+Forcing+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/&amp;title=Medusa+v1.5+Released+%E2%80%93+Parallel%2C+Modular+Login+Brute+Forcing+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/&amp;t=Medusa+v1.5+Released+%E2%80%93+Parallel%2C+Modular+Login+Brute+Forcing+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/&amp;title=Medusa+v1.5+Released+%E2%80%93+Parallel%2C+Modular+Login+Brute+Forcing+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/03/medusa-v15-released-parallel-modular-login-brute-forcing-tool/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>WMAT Released &#8211; Web Mail Auth Tool For Testing Web Mail Logins</title>
		<link>http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/</link>
		<comments>http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/#comments</comments>
		<pubDate>Tue, 24 Feb 2009 12:46:36 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[hacking web mail]]></category>
		<category><![CDATA[web mail auth tool]]></category>
		<category><![CDATA[web mail security]]></category>
		<category><![CDATA[webmail cracking]]></category>
		<category><![CDATA[webmail security]]></category>
		<category><![CDATA[webmail-hacking]]></category>
		<category><![CDATA[wmat]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1518</guid>
		<description><![CDATA[WMAT is Web Mail Auth Tool that provide some essential functions for testing web mail logins, written in python with support of pyCurl.
How it works?
It is very simple, You give WMAT file with usernames, file with passwords, URL of web mail app and chose pattern for attack. Patterns are XML files that define post/get fields, [...]]]></description>
			<content:encoded><![CDATA[<p>WMAT is Web Mail Auth Tool that provide some essential functions for testing web mail logins, written in python with support of pyCurl.</p>
<p><strong>How it works?</strong></p>
<p>It is very simple, You give WMAT file with usernames, file with passwords, URL of web mail app and chose pattern for attack. Patterns are XML files that define post/get fields, http method, referer, success tag, etc &#8230; for each web mail applications.</p>
<p><!--adsense#New468--></p>
<p>There are currently patterns for horde, squirrelmail, kerio and mdaemon web mail.</p>
<p>The XML pattern files look like this:</p>
<pre><code>--- horde.wmat.xml ---
&lt;xml version='1.0' encoding='UTF-8'&gt;
&lt;data>
&lt;username&gt;horde_user&lt;/username&gt;
&lt;password&gt;horde_pass&lt;/password&gt;
&lt;action_url&gt;login.php&lt;/action_url&gt;
&lt;success&gt;sidebar.php&lt;/success&gt;
&lt;method&gt;post&lt;/method&gt;
&lt;useragent&gt;&lt;/useragent&gt;
&lt;referer&gt;&lt;/referer&gt;
&lt;additional_fields&gt;&lt;/additional_fields&gt;
&lt;author&gt;ivan.markovic@netsec.rs&lt;/author&gt;
&lt;/data&gt;
-----------------------</code></pre>
<p>The author of WMAT requests for help from the community with the patterns, the author of the pattern will be credited in the author field of the XML file.</p>
<p><!--adsense#New468--></p>
<p>There are some more options like setting timeout (time between each request), bell on success and option for writing output in file. More can be seen in the <a href="http://security-net.biz/wmat/readme.txt">Readme file here</a>.</p>
<p>For future versions the following additions are planned:</p>
<ul>
<li>using a proxy</li>
<li>special addon for generation of usernames/passwords</li>
<li>automatic recognizer of web app</li>
</ul>
<p>You can download WMAT here:</p>
<p><a href="http://security-net.biz/wmat/wmat.zip">wmat.zip</a><br />
<a href="http://security-net.biz/wmat/wmat.py.txt">Python source.</a></p>
<p>Or read more here.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=WMAT+Released+%E2%80%93+Web+Mail+Auth+Tool+For+Testing+Web+Mail+Logins+http://bit.ly/20mv5o+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/&amp;title=WMAT+Released+%E2%80%93+Web+Mail+Auth+Tool+For+Testing+Web+Mail+Logins" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/&amp;title=WMAT+Released+%E2%80%93+Web+Mail+Auth+Tool+For+Testing+Web+Mail+Logins" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/&amp;t=WMAT+Released+%E2%80%93+Web+Mail+Auth+Tool+For+Testing+Web+Mail+Logins" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/&amp;title=WMAT+Released+%E2%80%93+Web+Mail+Auth+Tool+For+Testing+Web+Mail+Logins" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/02/wmat-released-web-mail-auth-tool-for-testing-web-mail-logins/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>
