Forum securite - entreprise - INTRUSION - AUTHENTIFICATION - ATTAQUE - PROTECTION

liste de forum SécuritéHome     FAQFAQ     ProfilProfil     S'enregistrerS'enregistrer     ConnexionConnexion  

limitation/bug with the dictionary function of EnableSecret

Répondre au sujet
Auteur Message
Jerry
Invité





MessagePosté le: Dim Mai 13, 2007 8:47 pm    Sujet du message: limitation/bug with the dictionary function of EnableSecret Répondre en citant

Hi,
is there a limitation or a bug with the dictionary function?
the dictionary has 23000 lines with the matching entry. for example "cisco"

I've got a message that no password was found, but with the "-view 1" option the key is calculated.

EnableSecret -password $1$Wx4W$YXHLyWM.LhIt7V5J6neJ3/ -dictionnary 1 -file_name_dico 123.txt -view 1
...
cigar-$1$Wx4W$hNXD2nFAsabqgppAiIwbm/
cindy-$1$Wx4W$svX4pObl6oIzJn0tsrPKC/
cisco-$1$Wx4W$YXHLyWM.LhIt7V5J6neJ3/
class-$1$Wx4W$5DJkDM5eO9MBZNXrCTFhG.
classic-$1$Wx4W$FUAaOjd5/XLuvsrMy.weZ0
claudia-$1$Wx4W$dxCmpswTlyHNaTr4417ts0
client-$1$Wx4W$RBEFhoSo63zFnOz9dnrRi/
clientes-$1$Wx4W$iHxtqMrCB1j22unPk4gaJ.

Sorry, but the password was not found

But the calculated secret $1$Wx4W$YXHLyWM.LhIt7V5J6neJ3/ and the "-password $1$Wx4W$YXHLyWM.LhIt7V5J6neJ3/" are the same.

with a small dictionary with less than 300 lines the result is
Yes, the password was found. It's : cisco

Is it a bug, feature or my fault.
Has anyone suggestions to use the whole dictionary?

Best regards
Jerry
Revenir en haut de page
Auteur Message
_sebf
Site Admin


Inscrit le: 27 Oct 2006
Messages: 33

MessagePosté le: Ven Mai 18, 2007 5:58 pm    Sujet du message: Répondre en citant

Lu Jerry,

I create a dictionnary with 30000 entries and I place the word cisco at the end.

After I use your command :
EnableSecret -password $1$Wx4W$YXHLyWM.LhIt7V5J6neJ3/ -dictionnary 1 -file_name_dico 123.txt -view 1

And the exe found the good password.

Peraphs a bug, but not at home.

Peraphs a problem with your dictionnary (caracters, enter, ...)

regards,
_________________
_SebF
Sébastien FONTAINE
Revenir en haut de page
Voir le profil de l'utilisateur Envoyer un message privé
Auteur Message
Jerry
Invité





MessagePosté le: Mer Mai 30, 2007 5:39 pm    Sujet du message: Répondre en citant

hi,
thanks for testing.
i had generated a new dictionary and the problem is still there.

with try & error i think i ve found the limitation.

My dictionary includes words with large entrys >50 characters
with more than 40 chars (+=41) the program crashed with an windows error.
this problem was solved before i wrote this topic. Use less than 40 character.

with more than 18 characters (+=19) the calculated key is right but the verification of the given and the calculated key does not work.
If there is an enty with more than 18 chars all following passwords will be ignored.

with less or equal 18 Chars the verification worked well.
i think thats the limitation.

I split my dictionary, first dictionary to the maximum of 18 characters per line and it worked well.
Longer passwords hardly occur. Wink

Best regards
Jerry
Revenir en haut de page
Auteur Message
_sebf
Site Admin


Inscrit le: 27 Oct 2006
Messages: 33

MessagePosté le: Sam Juin 02, 2007 3:58 pm    Sujet du message: Répondre en citant

Hi Jerry,

I tested the same command with my computer.

When I place a word with 319 characters, I obtain no error.
When I place a word with 320 characters, I obtain an windows error.

I don't have the same limit as you. (for the fun, 40*8=320:)


Else, when i place a long word in the disco, the password Cisco isn't found. Then I think is a problem with the memory and the declaration of my variables. I look that.

Thanks for your comment.

Regards
_________________
_SebF
Sébastien FONTAINE
Revenir en haut de page
Voir le profil de l'utilisateur Envoyer un message privé
Auteur Message
_sebf
Site Admin


Inscrit le: 27 Oct 2006
Messages: 33

MessagePosté le: Sam Juin 02, 2007 4:21 pm    Sujet du message: Répondre en citant

Hi Jerry,

I found the problem. It's was the variable "TAILLE_MAX_MOT", I put the value 300.

Then now, the words in the dictionnary must be lower than 300 Bytes.

The news version is 1.1.3.12 and you can download it here.

Regards.
_________________
_SebF
Sébastien FONTAINE
Revenir en haut de page
Voir le profil de l'utilisateur Envoyer un message privé
Auteur Message
Jerry
Invité





MessagePosté le: Dim Juin 03, 2007 12:47 am    Sujet du message: Répondre en citant

thank you for fixing the limitation _sebf,

i tried the new version with my old dictionary and it worked well.
Many thanks!

Jerry


A suggestion for future version is the implementation of the Cisco PIX Enable secret decryption.
Revenir en haut de page
Répondre au sujet Page 1 sur 1


mot clé : dos function the bug vpn intrusion reseau forum post dictionary attaques securite limitation enablesecret aide authentification of with

Copyright © 2006-2010 authsecu.com. Tous droits réservés. Les marques et marques commerciales mentionnées appartiennent à leurs propriétaires respectifs. L'utilisation de ce site Web sécurité implique l'acceptation des conditions d'utilisation et du règlement sur le respect de la vie privée de Sécurité. IP VPN LAN Téléphonie entreprise Expert de votre Infrastructure Comparatif ADSL Affiliation FrameIP Telecom