Re: cracking cisco passwords

From: Damiano Scrigni (damio@emaze.net)
Date: 10/15/01


Date: Mon, 15 Oct 2001 18:05:50 +0200
From: Damiano Scrigni <damio@emaze.net>
To: Jason binger <cisspstudy@yahoo.com>
Subject: Re: cracking cisco passwords
Message-ID: <20011015180550.B684@emaze.net>


 
http://www.alcrypto.co.uk/cisco/
http://www.ladysharrow.ndirect.co.uk/library/Exploits/router/ciscocrack.c

seem to be pretty easy to crack cisco passwords...
 
bye,
damio

Jason binger(cisspstudy@yahoo.com)@Sun, Oct 14, 2001 at 06:48:48PM -0700:
> I am currently performing a penetration test and
> managed to pull down the config using a HTTP
> vulnerability in the cisco interface.
>
> How do I crack the following password gained from the
> following line of the config?
>
> enable secret 5 $1$6Je2$MurE4FTzoZjQShRW4Ui9H0
>
> (the password has been changed)
>
> Jason

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • Re: cracking cisco passwords
    ... Subject: cracking cisco passwords ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: cracking cisco passwords
    ... > managed to pull down the config using a HTTP ... > vulnerability in the cisco interface. ... Mode 7 passwords are encrypted using a modified Vignere cipher, ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: cracking cisco passwords
    ... Subject: cracking cisco passwords ... > seem to be pretty easy to crack cisco passwords... ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: [VulnWatch] iDEFENSE Security Advisory: iSCSI Default Configuration File Settings
    ... The Cisco PSIRT would like clarify the issue raised in the following ... The installation script for the linux-iscsi drivers on Cisco's worldwide ... Since the /etc/iscsi.conf file contains CHAP passwords, ... > iSCSI Default Configuration File Settings ...
    (Bugtraq)
  • [Full-Disclosure] Re: [VulnWatch] iDEFENSE Security Advisory: iSCSI Default Configuration File Setti
    ... The Cisco PSIRT would like clarify the issue raised in the following ... The installation script for the linux-iscsi drivers on Cisco's worldwide ... Since the /etc/iscsi.conf file contains CHAP passwords, ... > iSCSI Default Configuration File Settings ...
    (Full-Disclosure)