[Owasp-cuiaba] Fwd: [Owasp-natal] JTR against 135 millions MD5 hashes

Kembolle Amilkar kembolle em owasp.org
Domingo Junho 17 19:36:28 UTC 2012


encaminhando...

Kembolle Amilkar
#/[ kembolle.com.br ] - Consultoria Segurança da Informação.
#/ [ samurayconsultoria.com.br ] - Chief Security Officer - Samuray
Consultoria.
#/ Systems Analyst | Esp. Information Security | Computer Forensic Expert |
#/ Owasp Chapter Lider Cuiabá - https://www.owasp.org/index.php/Cuiaba
#/ Mobile: [65] 9979-2925  && contato[at]kembolle.com.br.



---------- Forwarded message ----------
From: Noilson Caio <caiogore em gmail.com>
Date: 2012/6/17
Subject: [Owasp-natal] JTR against 135 millions MD5 hashes
To: owasp-natal em lists.owasp.org


As part of a recent presentation for the InfoSec Southwest conference (
http://www.infosecsouthwest.com/), KoreLogic scoured the Internet looking
for MD5 and SHA1 password hashes. We came up with a few--about 146 million.
In order to improve the research behind better password cracking--and
stronger password storage and strength enforcement--researchers need raw
data, and real data is better than contrived data.

These hashes were obtained from Hash-cracking websites and forums, pastebin
leaks, paste2.org, yourpaste, MD5 hashcracking lists, Google, etc. All
these hashes were previously published and shared publicly by other people
on the Internet, and KoreLogic is not responsible for their initial
release.

We collected these, removed as many "bad" or invalid hashes as possible,
removed any usernames or site information, sorted, and uniqued them into
this one massive list. Some non-crackable hashes and other noise might have
slipped through; for example we know there are at *least* 5,000 NTLMs in
this list. Additionally, some of the MD5s might be missing their salts.

The result is a 2.5 gigabyte tarball. A .torrent of it is available here:

InfoSecSouthwest2012_Ripe_Hashes.tgz.torrent<https://www.korelogic.com/Resources/Tools/InfoSecSouthwest2012_Ripe_Hashes.tgz.torrent>


https://www.korelogic.com/InfoSecSouthwest2012_Ripe_Hashes.html

-- 
Noilson Caio Teixeira de Araújo
Linux Professional Institute Certification  2 - LPI000182893
Novell Certified Linux Administrator (CLA) - 10111916
Novell Data Center Technical Specialist

http://ncaio.ithub.com.br
http://br.linkedin.com/in/ncaio
http://www.commandlinefu.com/commands/by/ncaio
http://www.dicas-l.com.br/autores/noilsoncaioteixeiradearaujo.php


_______________________________________________
Owasp-natal mailing list
Owasp-natal em lists.owasp.org
https://lists.owasp.org/mailman/listinfo/owasp-natal
-------------- Próxima Parte ----------
Um anexo em HTML foi limpo...
URL: <http://lists.owasp.org/pipermail/owasp-cuiaba/attachments/20120617/9a05d535/attachment.html>


More information about the Owasp-cuiaba mailing list