Penetration Testing mailing list archives

Novell Password Cracking Issue


From: <orwell6717 () hushmail com>
Date: Wed, 24 Jan 2007 15:35:51 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello,

I am conducting a penetration test for a client and have run into
an issue with their Novell 5.1 DSRepir file that contains the
password hash information (00000000.$du).  I have been able to
extract the file, but have had little success finding a password
cracking/recovery tool that will interpret the file properly.

I've attempted to utilize some of the older tools (Pandora/IMP)
that worked with old style files (DSREPAIR.DIB) but have had little
success.

Is anyone aware of tool that can properly read in the data and run
against the file?  Commercial or open source, doesn't matter.

Thanks!

Orwell
-----BEGIN PGP SIGNATURE-----
Note: This signature can be verified at https://www.hushtools.com/verify
Version: Hush 2.5

wpwEAQECAAYFAkW30TcACgkQaMTYbYxrup5OhQP/cYiZtp4hGT8gqGJvvfByr5riOaEo
+k/nPT+9hZZKljbpA4NCO1VklJnzVP3FMF/jmhQkgSpS1lJTNao1ZlZPtPEYgFYAFBnO
qWbkseMr+c7A6GgoYgfzya2KBftJ3e8BaGMrRapA5Fe2j822mC6rFLIYwnJ1dRx9w1/l
sP4m3ZI=
=s/FX
-----END PGP SIGNATURE-----




Concerned about your privacy? Instantly send FREE secure email, no account required
http://www.hushmail.com/send?l=480

Get the best prices on SSL certificates from Hushmail
https://www.hushssl.com?l=485


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: