Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 29 guests online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Resourcesarrow Toolsarrow XP Password Cracking using IEEE-1394 - Which is the tool?
Ethical Hacker Community Forums
December 03, 2008, 02:28:58 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2-Day Ethical Hacking Conference with MS Blue Hats Oct 31 - Nov 1. Tickets Only $100! www.chicagocon.com/content/view/103/51/
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: XP Password Cracking using IEEE-1394 - Which is the tool?  (Read 4046 times)
0 Members and 1 Guest are viewing this topic.
Manu Zacharia (-M-)
Full Member
***
Offline Offline

Posts: 195



View Profile WWW
« on: March 08, 2008, 09:00:57 AM »

Hi All,

I was listening to the TechTarget Weekly Podcast, where they were talking about a password cracking tool for Windows XP using the IEEE-1394 port. Do you have any idea about this tool. They say that its a linux based tool.

I Could find the following link.

http://freerepublic.com/focus/f-chat/1981136/posts

Any more links or info do we have?
Logged

Manu Zacharia
Certified ISO 27001:2005 (Information Security Management System) Lead Auditor
Promote the Information Security Day
Visit - http://www.informationsecurityday.com
eth3real
Full Member
***
Offline Offline

Posts: 130



View Profile
« Reply #1 on: March 08, 2008, 11:50:36 AM »

I saw this on Hackszine.com a few days ago.
http://www.hackszine.com/blog/archive/2008/03/ram_dump_over_firewire.html

It looks like the name of the tool is winlockpwn. I haven't got a chance to try it out, yet, since I have no PCs with FireWire.
Here is the link to the project site.
http://storm.net.nz/projects/16
Logged

Jess Hires
MCP, C|EH
ChrisG
EH-Net Columnist
Hero Member
*****
Offline Offline

Posts: 1042


View Profile WWW
« Reply #2 on: March 08, 2008, 08:45:58 PM »

yup thats the right link.  getting the libraries installed is straightforward but i havent been able to get it to work on ubuntu, some sort of python memory read issue.
Logged

...tests i took go here...

http://carnal0wnage.blogspot.com/
eth3real
Full Member
***
Offline Offline

Posts: 130



View Profile
« Reply #3 on: March 09, 2008, 12:36:58 PM »

This is something I really have to try out soon.

My laptop at work has a FireWire port, but I disabled it a long time ago since I don't use it. It's time for me to dig up a cable and test some of the workstations around the office. Cool

One could also get a PCMCIA IEE-1394 card for their laptop to try this out.

I would be curious to see if this will work with a Windows laptop running andLinux (see http://www.andlinux.org/). I will try this out some time this week.
Logged

Jess Hires
MCP, C|EH
eth3real
Full Member
***
Offline Offline

Posts: 130



View Profile
« Reply #4 on: May 22, 2008, 02:37:35 AM »

I was just curious if anybody has been able to try this out, or if this type of vulnerability is being addressed in pentests, etc., or if Microsoft has corrected this problem yet.

It has been a dead topic for a while, but I still think it shows some potential. I haven't yet been able to try it myself, though.
Logged

Jess Hires
MCP, C|EH
ChrisG
EH-Net Columnist
Hero Member
*****
Offline Offline

Posts: 1042


View Profile WWW
« Reply #5 on: May 22, 2008, 10:33:31 AM »

its regarded as a feature not a vulnerability.  there are some tutorials out there using helix to get this going and someone got it going on BT3 as well.
Logged

...tests i took go here...

http://carnal0wnage.blogspot.com/
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.043 seconds with 23 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
During the most recent election, I:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.