top | item 46654167

(no title)

dbetteridge | 1 month ago

I recall using ntlm rainbow tables to crack windows hashes in high school in like 2008?

Amazing that this is still around and causing someone enough of a headache to justify spending money on.

Also amazing what a teenager with lots of free time and a bootable Linux usb can get up to.

discuss

order

eerikkivistik|1 month ago

There used to be a joint online project to compute these tables in a SETI like distributed system. Everyone who contributed their CPU cycles, could use the tables. And yeah, around 2005-2008.

coopreme|1 month ago

LM, nthash aka NTLM, net-ntlmv1 aka ntlmv1, net-ntlmv2 aka NTLMv2. Challenge response stuff is different. Naming here is painful.

bri3d|1 month ago

net-ntlmv1 rainbow tables have been around forever too though, the same attack documented in this blog post has been hosted as a web service at https://crack.sh/netntlm/ for 10+ years

dbetteridge|1 month ago

Ah Microsoft and naming things... Name a better combo

But fair enough, I don't recall which exact version I was mucking with that long ago.

rootsudo|1 month ago

yep, that and also can use cain and abel even back then... hardest part was putting whatever network card in promiscious mode.

dbetteridge|1 month ago

Yes!! That was the software, thanks for the memory trigger