Security Basics mailing list archives

Re: Re: How Windows Password Cracking Programs Work


From: e.m.baechle () ieee org
Date: 27 Jul 2006 02:15:42 -0000

You've got it right.

Password "Cracking" for the most part is nothing but a systematic attempt to create a hash that matches the one you 
took from the system.  The program could use dictionaries, brute force, or a combination along with predictability 
routines for the language being used.  

The most important part of that is obtaining the password hash files to compare the guesses against.  A lot of 
attention goes towards creating a "reasonably uncrackable password."  But the first part of the password crack is to 
obtain the password hash files.

Sincerely,

Eric Baechle

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence 
in Information Security. Our program offers unparalleled Infosec management 
education and the case study affords you unmatched consulting experience. 
Using interactive e-Learning technology, you can earn this esteemed degree, 
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: