Letters-Only LM Hash Database 237
Peter Clark writes "Disk storage has increased tremendously in the past 5 years and the blatant insecurities in the antiquated LM hashing technique have not gone away; though functionality has been added to disable LM hashes, this is not set by default. With some help from Elcomsoft, simple flat files have been created that hold every combination of LM hash for letters only passwords. Jesko has coded a server application which allows you to access this database. Simply telnet to: beginningtoseethelight.no-ip.org on port 2501 and paste in a LM hash. So how does this differ from Rainbow tables? Well this will return a password 100% of the time, using minimal processor power, in approximately less than 0.2 seconds."
less than 0.2 seconds (Score:5, Funny)
Re:Someone explain? (Score:5, Funny)
Of course it's not clear, it's been hashed -- haven't you been following along?
This just in from beginningtoseethelight... (Score:5, Funny)
Thank you for letting us know your passwords.
Regards,
The staff of beginningtoseethelight
Light? (Score:2, Funny)
beginningtoseethelight.no-ip.org
the
The light at the end of the tunnel is the headlight of an approaching train.
Am I the only one to see a connection ?
awright! (Score:5, Funny)
Whew! I'm still safe (Score:5, Funny)
Its H82sd*e2Tn.
Nobody is ever going to crack that!!!
How long until... (Score:3, Funny)
And, yes, I am aware of the irony of posting this on election day in the US...
Holy Ratshit, Batman! (Score:3, Funny)
Please, please tell me you are joking.
I am no fan of MicroSoft, but come on, no one would really do something like this.
I figured that my passwords are safe because they are normally the tunes of music..
For example
Taaaah-dum+dum*dum#dum#taaaaah|dum!tum^du m$tum%rumtittytum.
And since I am tone deaf, It's not very likey that someone will hit upon the combination soon.
The usage of the +-@# characters is based on a matrix written in pencil on the side of the monitor.
8^)
Re:modeling unknown passwords (Score:3, Funny)
Yes, much less likely, but people sometimes choose things like that for their passwords anyway. My wife's self-chosen password to her bank account, for example, is 'Nfok3G!~qOmp', and I can tell you that NOBODY is going to guess that one!