Project 1999

Go Back   Project 1999 > General Community > Off Topic

Closed Thread
 
Thread Tools Display Modes
  #1  
Old 05-20-2014, 05:14 PM
Xer0 Xer0 is offline
Fire Giant

Xer0's Avatar

Join Date: Jul 2012
Posts: 833
Default

Quote:
Originally Posted by r00t [You must be logged in to view images. Log in or Register.]
You can hack windows rather easily without knowing the root password or stealing the hash from memory (lol windows unsalted passwords 2014)

Basically create a named pipe from something with system level privileges, impersonate the pipe, open the thread token, and then spawn a reverse shell with it.

Sources:
http://msdn.microsoft.com/en-us/libr...(v=vs.85).aspx
http://msdn.microsoft.com/en-us/libr...(v=vs.85).aspx
http://msdn.microsoft.com/en-us/libr...(v=vs.85).aspx
http://msdn.microsoft.com/en-us/libr...(v=vs.85).aspx

or burn ophcrack for windows to a cd and boot your system from that disc.

you basically hit a button and it finds the passwords.
  #2  
Old 05-21-2014, 09:05 AM
moklianne moklianne is offline
Sarnak


Join Date: Dec 2010
Posts: 417
Default

Quote:
Originally Posted by Xer0 [You must be logged in to view images. Log in or Register.]
or burn ophcrack for windows to a cd and boot your system from that disc.

you basically hit a button and it finds the passwords.
If the password is secure, it will take too long to bruteforce since a dictionary attack will fail. I suppose you could use rainbow tables, but even that takes a while and you'll need to lug around a 1TB+ external drive. Its instant if you just use a password remover app.

Of course, all of this is if you have physical access or local admin access to the box. Properly secured boxes are a bit more difficult to compromise.
__________________
Mokli - Druid of Karana
Closed Thread


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 01:19 PM.


Everquest is a registered trademark of Daybreak Game Company LLC.
Project 1999 is not associated or affiliated in any way with Daybreak Game Company LLC.
Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.