19/9/17

PASSWORDS

http://www.nyxbone.com/pentest/PASSWORDS.html



HASHES

» findmyhash - Try to crack different types of hashes using free online services.

» Hash Identifier - Software to identify the different types of hashes used to encrypt data and especially passwords.

» Password Cracking Suite - Hash cracking suite.



ATTACK ONLINE

» brut3k1t - Brute-force (dictionary attack, jk) attack that supports multiple protocols and services.

» Credmap - The Credential Mapper - Is an open source tool that was created to bring awareness to the dangers of credential reuse.

» THC-Hydra - Network Logon Cracker.

» Invoke-TheHash - Contains PowerShell functions for performing pass the hash WMI and SMB command execution. WMI and SMB services are accessed through .NET TCPClient connections.



ATTACK OFFLINE

» DPAT - Domain Password Audit Tool - Is a python script that will generate password use statistics from password hashes dumped from a domain controller and a password crack file such as oclHashcat.pot generated from the oclHashcat tool during password cracking.

» FireMasterCracker - Firefox Master Password Cracking Software.

» Hashcat - World's fastest password cracker.

» Hob0Rules - Password cracking rules for Hashcat based on statistics and industry patterns.

» John the Ripper - Is a fast password cracker, currently available for many flavors of Unix, Windows, DOS, and OpenVMS.

» JRecoverer - Another free password recovery software tool for Linux, Oracle, MySQL, PostgreSQL, Microsoft SQL Server, entre otras.

» LaZagne - Is an open source application used to retrieve lots of passwords stored on a local computer.

» Pwdump7 - Password dumper for windows.

» Quarks PwDump - Dump various types of Windows credentials without injecting in any process.

» Viper - Is a brute-force password cracker.



GENERAL

» CeWL - Custom Word List generator.

» Crunch - Is a wordlist generator where you can specify a standard character set or a character set you specify. crunch can generate all possible combinations and permutations.

» Offline NT Password & Registry Editor - Is a utility to reset the password of any user that has a valid local account on your Windows system.

» Passgen for Julia 0.2.2 - Is a replacement for crunch and stands between Crunch and Hashcat in terms of speed and variation.

» passtrust - A Ruby based tool that converts a simple passphrase into a secure password.

No hay comentarios: