Picked up some switches from an auction
One wasn't wiped. Cisco type 5, say hello to hashcat.
Picked up some switches from an auction
One wasn't wiped. Cisco type 5, say hello to hashcat.
moar power
🤔 I need more GPUs
Did I learn nothing from @CrackMeIfYouCan at @defcon ???
I have no metadata to make educated guesses as to what the passwords could be. Unless it's a cheesy variation of the school mascot?
the network admin even left an emergency maintenance port
This switch was probably in a locked closet, as this maintenance port has 0 controls for access.
Red teams would probably note a 24 port access switch with port24 NOT patched in and hanging out...
Here we go...
Oh good, my CMIYC rig is still loading drivers... So many times the background processes destroy the nvidia drivers randomly....
I am reviewing the stored config. It's very nicely done for an access switch.
proper ACLs on SNMP server / management SSH
dhcp snooping and RA guard
arp inspection with src and dst mac
err-disable recovery for all common problems
bpduguard, 802.1x
I'm pretty jealous, this config is nice!
@ryanc @CrackMeIfYouCan @defcon
I did some RDP sessions to my other gaming rigs... Got the ETA down to 11days to process RockYou+OneRule
This is brute force basically, as I have nothing to base a taylored wordlist on. Unless the Network Admins at this school like to use emojis in their passwords?
Estimated time: 11d 09:01:44
Speed: 3203.03 kH/s
@kajer @reconbot @CrackMeIfYouCan @defcon
:hacker_h: :hacker_a: :hacker_c: :hacker_k:
:hacker_h: :hacker_a: :hacker_r: :hacker_d: :hacker_e: :hacker_r:
@reconbot @ryanc @CrackMeIfYouCan @defcon
Sadly, overnight didnt make much progress. Still at 0 cracked hashes.
Here are the quick stats of the operation.
Keyspace dispatched: 1729129 (12.05%)
Keyspace searched: 1689227 (11.78%)
Time spent: 23:56:27
Estimated time: 7d 11:21:26
Speed: 4905.58 kH/s
This is mode 500 on hashcat
cisco type 5 is $1$salt$hash
@kajer @ryanc @CrackMeIfYouCan @defcon In 2002 my godfather owned one of the first 1ghz Pentiums on the market and my god it ran l0phtcrack faster than anything else. We've come a long way but the more things change...
@ryanc @CrackMeIfYouCan @defcon
At least my garage will be nice and cozy
@ryanc @reconbot @CrackMeIfYouCan @defcon
Trying!!!
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.