Re: Cisco Catalyst 4006 CatOS Password Hash

From: Frisbie (listasdecorreo_at_wanadoo.es)
Date: 12/12/03

  • Next message: Cotter, Joe: "RE: Reporting aspect of pen-testing"
    To: "Paul Bakker" <bakker@fox-it.com>, <pen-test@securityfocus.com>
    Date: Fri, 12 Dec 2003 16:23:34 +0100
    
    

    ----- Original Message -----
    From: "Paul Bakker" <bakker@fox-it.com>
    Sent: Wednesday, December 10, 2003 12:32 PM

    >The passwords on the Catalyst are in the same format (for the eye), but
    instead of starting with $1$ they start with $2$..... Both John and Cain do
    not recognize these hashes.

    You only have to change $2$ by $1$ on the hash and John the ripper will
    recognize and crack it...

    Cheers,
    Frisbie

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: Cotter, Joe: "RE: Reporting aspect of pen-testing"

    Relevant Pages

    • RE: ntds.dit, john and pwdump2
      ... thanks for the tip on Cain. ... to a file that you can then crack using l0pht, john or cain. ... Subject: ntds.dit, john and pwdump2 ...
      (Security-Basics)
    • RE: John the Ripper 1.7; pam_passwdqc 1.0+; tcb 1.0; phpass 0.0
      ... After 7+ years of development snapshots only (yes, I know, that was ... John the Ripper 1.7 release is out: ... John the Ripper became a lot faster, primarily at DES-based hashes. ... John 1.7 makes an attempt at generic vectorization support ...
      (Bugtraq)
    • John the Ripper 1.7; pam_passwdqc 1.0+; tcb 1.0; phpass 0.0
      ... After 7+ years of development snapshots only (yes, I know, that was ... John the Ripper 1.7 release is out: ... John the Ripper became a lot faster, primarily at DES-based hashes. ...
      (Bugtraq)
    • Re: Added hashes.
      ... Then XORing with other hashes should be a useful tool in searching ... look at my reply to John E. Hedstate. ... if ONE of the two original hashes is truly perfectly random, ...
      (sci.crypt)
    • Re: Question on File::Find.
      ... John> Something like: ... John> # build hashes with pairs ... Perl/Unix/security consulting, Technical writing, Comedy, etc. etc. ...
      (perl.beginners)