Code Monkey home page Code Monkey logo

Comments (1)

solardiz avatar solardiz commented on July 17, 2024

Thank you for reporting this, @sjanusz-r7!

We were under impression that tools standardized on uppercase for MS SQL hashes. Since for many other hashes the case of characters in their encodings matters, we do not universally support arbitrary/mixed case.

I've prepared a patch for this issue to have our three MS SQL formats support both upper and lower case, by unifying to upper case for writing to pot files, like we already do e.g. in mysqlSHA1_fmt_plug.c. I'm also setting FMT_SPLIT_UNIFIES_CASE for consistency, even though I think it no longer matters after #4429 as mentioned in #4430. We'll need to clean that up separately.

While at it, I was also interested in how easily crackable your test password is. Turns out our current default settings (no options at all, just the filename) do crack it, but that takes a minute on a laptop CPU. However, putting only the word password in a wordlist file and using -ru=by-rate -rules-stack=by-score cracks it instantly. So our default wordlist rules are powerful enough to crack this given other manglings of this word already present in our default password.lst, but not powerful enough to crack it from just the original word password, for which dual application of our larger rule set is needed. All of this pertains to our latest settings in here, which were replaced in January 2022, so your build from November 2021 probably doesn't have this and would have a harder time cracking this password.

from john.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.