{"id":1993,"date":"2009-08-21T09:44:17","date_gmt":"2009-08-21T09:44:17","guid":{"rendered":"https:\/\/www.darknet.org.uk\/?p=1993"},"modified":"2015-09-09T19:37:56","modified_gmt":"2015-09-09T11:37:56","slug":"ikecrack-ikeipsec-authentication-cracking-tool","status":"publish","type":"post","link":"https:\/\/www.darknet.org.uk\/2009\/08\/ikecrack-ikeipsec-authentication-cracking-tool\/","title":{"rendered":"IKECrack – IKE\/IPSec Authentication Cracking Tool"},"content":{"rendered":"
[ad]<\/p>\n
IKECrack is an open source IKE\/IPSec authentication crack tool. This tool is designed to bruteforce or dictionary attack the key\/password used with Pre-Shared-Key [PSK] IKE authentication. The open source version of this tool is to demonstrate proof-of-concept, and will work with RFC 2409 based aggressive mode PSK authentication.<\/p>\n
IKE Agressive Mode BruteForce Summary<\/strong><\/p>\n Aggressive Mode IKE authentication is composed of the following steps:<\/p>\n IKECrack utilizies the HASH sent in step 2, and attempts a realtime bruteforce of the PSK. This involves a HMAC-MD5 of the PSK with nonce values to determine the SKEYID, and a HMAC-MD5 of the SKEYID with DH pubkeys, cookies, ID, and SA proposal. In practice, SKEYID and HASH_R are calculated with the Hash cipher proposed by the initiator, so could actually be either SHA1 or MD5 in HMAC mode.<\/p>\n Project Details<\/strong><\/p>\n IKECrack utilizes components from the following OpenSource\/PublicDomain programs:<\/p>\n Performance<\/strong><\/p>\n Initial testing with Perl based IKECrack shows numbers of 18,000 tests per second with a PIII 700, and can bruteforce 3 chars of ucase\/lcase\/0-9 in 13 seconds.<\/p>\n MDCrack [a MD5 bruteforce tool] can achieve 1.5 million keys per second with pure MD5 and a PIII 700. PSK bruteforcing consists of 4 MD5’s, and 4 64 byte XORs….but should still be able to achieve 375,000 IKE keys per second. Preliminary tests in C have shown 26,000 keys per second with un-optimized routines. I’m hoping that Simeon Pilgrim’s MD5 routines will speed this up a bit more.<\/p>\n You can download IKECrack here:<\/p>\n\n
\n