Username: 
Password: 
Restrict session to IP 

Have almost everything  Go to the MD5.SALT challenge

1 2
Global Rank: 151
Totalscore: 128004
Posts: 14
Thanks: 15
UpVotes: 13
Registered: 14y 44d



Last Seen: 81d 15h
The User is Offline
Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
Hi!

Do I have to crack the admin's hash or there is an easier way? I have the hash and I also know what the salt is...
Totalscore: 362739
Posts: 107
Thanks: 152
UpVotes: 95
Registered: 16y 257d
Jinx`s Avatar










The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
Yes the hash needs to be cracked.
Global Rank: 227
Totalscore: 94360
Posts: 1684
Thanks: 1360
UpVotes: 920
Registered: 16y 314d




Last Seen: 1d 11h
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
As an additional hint:
It can be easily cracked with a common english wordlist.
I chose a long, plural, lowercase word.

Good luck and have fun with the challenges Smile
The geeks shall inherit the properties and methods of object earth.
Global Rank: 68
Totalscore: 227671
Posts: 245
Thanks: 420
UpVotes: 281
Registered: 16y 8h
shadum`s Avatar







Last Seen: 161d 15h
The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
Quote from CHItA
Nov 15, 2010 - 18:46:40

Do I have to crack the admin's hash or there is an easier way?


I tried, unsuccessfully, to get around cracking the hash. I'm not sure that would have been an easier way though. Smile

Cracking it isn't hard if you know the salt, have a decent wordlist, and the right tool. It cracked in seconds for me, once I had those three things. Really, if you've got the hash and the salt you have already done the hardest part.
Totalscore: 362739
Posts: 107
Thanks: 152
UpVotes: 95
Registered: 16y 257d
Jinx`s Avatar










The User is Offline
RE: Have almost everything
Google/translate2Thank You!1Good Post!1Bad Post! link
Quote from shadum
Cracking it isn't hard if you know the salt, have a decent wordlist, and the right tool. It cracked in seconds for me, once I had those three things. Really, if you've got the hash and the salt you have already done the hardest part.



I totally agree with Gizmore and shadum. The cracking part took me around 10 seconds. The hardest part was to find the hash .. it took me ages!
Last edited by Jinx - Nov 15, 2010 - 21:04:00
Global Rank: 151
Totalscore: 128004
Posts: 14
Thanks: 15
UpVotes: 13
Registered: 14y 44d



Last Seen: 81d 15h
The User is Offline
RE: Have almost everything
Google/translate2Thank You!2Good Post!0Bad Post! link
That's quiet funny because for me to get these stuff was the shorter part, now i try to find wordlists and password crackers that is able to crack pass.salt format and these stuff didn't work at all... :/

EDIT: Finally I got the answer Smile thanks for hints!
Last edited by CHItA - Nov 15, 2010 - 22:17:52
Global Rank: 1475
Totalscore: 17820
Posts: 2
Thanks: 2
UpVotes: 2
Registered: 14y 28d
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
I have the hash, it was the easier part for me. The cracking could be easy also, but I don't know what the salt is.
Is it a "guess the salt" challenge or I have to get the salt somehow else?
Global Rank: 33
Totalscore: 313441
Posts: 54
Thanks: 79
UpVotes: 58
Registered: 16y 264d










Last Seen: 1d 17h
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
yeap you can guess the salt if you are lucky enough.. Drool
but there is a way to find it so you don't have to guess anything...
so no it's not a "guess the salt" challenge.. Smile
good luck

criple_ripper
Global Rank: 1475
Totalscore: 17820
Posts: 2
Thanks: 2
UpVotes: 2
Registered: 14y 28d
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
Quote from criple_ripper
Dec 03, 2010 - 12:04:15

yeap you can guess the salt if you are lucky enough.. Drool
but there is a way to find it so you don't have to guess anything...
so no it's not a "guess the salt" challenge.. Smile
good luck

criple_ripper

oh, ok, then i've to rethink it Smile
thx
Global Rank: 222
Totalscore: 95413
Posts: 15
Thanks: 19
UpVotes: 15
Registered: 14y 307d


Last Seen: 1y 119d
The User is Offline
RE: Have almost everything
Google/translate1Thank You!1Good Post!0Bad Post! link
there are many ways to use the salt..
like md5(md5(pass).md5(salt)) or md5(pass.md5(salt)) or md5(md5(pass).salt) or even md5(pass.salt)
is the used way mentioned in the title (md5(md5(pass).salt))?
1 2
faxtorial, Redknee, tunelko, silenttrack, n0tHappy, nonfungiblesecurity, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri, csuquvq have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 49687 times.