RainbowCrack Web Application

From: muts@zahav.net.il
Date: Thu Mar 25 2004 - 06:37:36 EST


('binary' encoding is not supported, stored as-is) I've seen posts on various security mailing lists concerning the availability of rainbowcrack tables, so I thought i might as well speak up.

Members of www.whitehat.co.il have completed the generation of the MD4 (NTLM) "all" characterset hash tables (about 118 GB), and it's currently cracking passwords for them, via a small web application.

The original idea was to allow members (who contributed to the hash generation) access to a rainbowcrack web application, once all the hashes were created. A group effort sorta thing.

Since the project was completed, I've been getting numerous requests for access to this web application.

I've decided to "sell" a 6 month "membership access" to the rainbowcrack application for 10$. This symbolic fee will allow me maintain the server, and keep it in working condition. I won't be making my first million by selling membership :).


The following are several NT/2000 passwords cracked by rainbowcrack, in an avarage of 15 minutes.


!#%&1qazxsw2
!#%&3edcvfr4
!@#QWEasd
!BinM,$YuSt.b7
!Np@57bbR*
!n2L4Anj
#1buck
#3.5GHzOdd1&2


For more info, visit www.whitehat.co.il.

---------------------------------------------------------------------------
You're a pen tester, but is google.com still your R&D team?
Now you can get trustworthy commercial-grade exploits and the latest
techniques from a world-class research group.
www.coresecurity.com/promos/sf_ept1
----------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:51 EDT