# Password cracking | Computer Science homework help

## I need various screenshots showing that it was compleate

For lab 8 you will examine password cracking.

• Length: the number of characters the password contains.
• Complexity: does it use a combination of letters, numbers, and symbol?
• Unpredictability: is it something that can be guessed easily by an attacker?

Let’s now look at a practical example. We will use three passwords namely

For  this example, we will use the password strength indicator of Cpanel  when creating passwords. The images below show the password strengths of  each of the above-listed passwords.

https://cpanel.net/

This is a trial service and will work for you to look at the passwords.

The higher the strength number, better the password.

Let’s suppose that we have to store our above passwords using md5 encryption. We will use an online md5 hash generator to convert our passwords into md5 hashes.

The table below shows the password hashes.

We will now use http://www.md5this.com/ to crack the above hashes. The images below show the password cracking results for the above passwords.

As  you can see from the above results, we managed to crack the first and  second passwords that had lower strength numbers. We didn’t manage to  crack the third password which was longer, complex and unpredictable. It  had a higher strength number.

There are a number of techniques that can be used to crack passwords. We will describe the most commonly used ones below;

• Dictionary attack– This method involves the use of a wordlist to compare against user passwords.
• Brute force attack–  This method is similar to the dictionary attack. Brute force attacks  use algorithms that combine alpha-numeric characters and symbols to come  up with passwords for the attack. For example, a password of the value  “password” can also be tried as [email protected]\$\$word using the brute force attack.
• Rainbow table attack–  This method uses pre-computed hashes. Let’s assume that we have a  database which stores passwords as md5 hashes. We can create another  database that has md5 hashes of commonly used passwords. We can then  compare the password hash we have against the stored hashes in the  database. If a match is found, then we have the password.
• Guess–  As the name suggests, this method involves guessing. Passwords such as  qwerty, password, admin, etc. are commonly used or set as default  passwords. If they have not been changed or if the user is careless when  selecting passwords, then they can be easily compromised.
• Spidering–  Most organizations use passwords that contain company information. This  information can be found on company websites, social media such as  facebook, twitter, etc. Spidering gathers information from these sources  to come up with word lists. The word list is then used to perform  dictionary and brute force attacks.

Spidering sample dictionary attack wordlist

``1976 <founder birth year>smith jones <founder name>acme <company name/initials>built|to|last <words in company vision/mission>golfing|chess|soccer <founders hobbiesExamine the available software for Kali Linux.``

John the Ripper

John  the Ripper uses the command prompt to crack passwords. This makes it  suitable for advanced users who are comfortable working with commands.  It uses to wordlist to crack passwords. The program is free, but the  word list has to be bought. It has free alternative word lists that you  can use. Visit the product website https://www.openwall.com/john/ for more information and how to use it.

Cain & Abel

Cain  & Abel runs on windows. It is used to recover passwords for user  accounts, recovery of Microsoft Access passwords; networking sniffing,  etc. Unlike John the Ripper, Cain & Abel uses a graphic user  interface. It is very common among newbies and script kiddies because of  its simplicity of use. Visit the product website http://www.softpedia.com/get/Security/Decrypting-Decoding/Cain-and-Abel.shtml for more information and how to use it.

Ophcrack

Ophcrack is a cross-platform Windows password cracker that uses rainbow tables to crack passwords. It runs on Windows, Linux and Mac OS. It also has a module for brute force attacks among other features. Visit the product website http://ophcrack.sourceforge.net/ for more information and how to use it.

In this practical scenario, we are going to crack Windows account with a simple password. Windows uses NTLM hashes to encrypt passwords. We will use the NTLM cracker tool in Cain and Abel to do that.

Cain and Abel cracker can be used to crack passwords using;

• Dictionary attack
• Brute force
• Cryptanalysis

We will use the dictionary attack in this example. You will need to download the dictionary attack wordlist here 10k-Most-Common.zip.

For  your exercise, create a few acccounts on both Linux and Windows VMs.  Using the most common passwords, use Cane and Abel to attempts cracks on  the passwords of varying size and difficulty. Also, think about  changing the common passwords to see the difference in time. Record your  findings.

Basic features
• Free title page and bibliography
• Unlimited revisions
• Plagiarism-free guarantee
• Money-back guarantee
On-demand options
• Writer’s samples
• Part-by-part delivery
• Overnight delivery
• Copies of used sources
Paper format
• 275 words per page
• 12 pt Arial/Times New Roman
• Double line spacing
• Any citation style (APA, MLA, Chicago/Turabian, Harvard)

# Our guarantees

We value our customers and so we ensure that what we do is 100% original..
With us you are guaranteed of quality work done by our qualified experts.Your information and everything that you do with us is kept completely confidential.

### Money-back guarantee

You have to be 100% sure of the quality of your product to give a money-back guarantee. This describes us perfectly. Make sure that this guarantee is totally transparent.

### Zero-plagiarism guarantee

The Product ordered is guaranteed to be original. Orders are checked by the most advanced anti-plagiarism software in the market to assure that the Product is 100% original. The Company has a zero tolerance policy for plagiarism.

### Free-revision policy

The Free Revision policy is a courtesy service that the Company provides to help ensure Customer’s total satisfaction with the completed Order. To receive free revision the Company requires that the Customer provide the request within fourteen (14) days from the first completion date and within a period of thirty (30) days for dissertations.

The Company is committed to protect the privacy of the Customer and it will never resell or share any of Customer’s personal information, including credit card data, with any third party. All the online transactions are processed through the secure and reliable online payment systems.

### Fair-cooperation guarantee

By placing an order with us, you agree to the service we provide. We will endear to do all that it takes to deliver a comprehensive paper as per your requirements. We also count on your cooperation to ensure that we deliver on this mandate.

## Calculate the price of your order

550 words
We'll send you the first draft for approval by September 11, 2018 at 10:52 AM
Total price:
\$26
The price is based on these factors: