Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests and 2 members online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow Wordlist for partial Social Nums
EH-Net
May 19, 2013, 07:43:03 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Wordlist for partial Social Nums  (Read 2737 times)
0 Members and 1 Guest are viewing this topic.
hoytj
Newbie
*
Offline Offline

Posts: 3


View Profile
« on: June 03, 2009, 08:26:55 AM »

I'm looking for some advice on creating a wordlist of the last four or five of social num combinations. 

So I need to create a wordlist of possible permutations for the last five digits of a social numbs.   

Has anyone used such a list, or do you have any advice on generating a list like this?

Thanks,
John
Logged
hayabusa
Hero Member
*****
Offline Offline

Posts: 1630



View Profile
« Reply #1 on: June 03, 2009, 12:29:27 PM »

I'd think it wouldn't be that difficult.  Script to start at 0 and add 1, echoing to a file, until you hit 99,999.  Each time, check value, and if below 10, 100, 1000, 10000, prepend missing 0's.  I don't have time to write such, right now, but wouldn't think it too hard.

HTH
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCE, OSCP , GPEN, C|EH
hoytj
Newbie
*
Offline Offline

Posts: 3


View Profile
« Reply #2 on: June 03, 2009, 03:06:11 PM »

I think that I came up with a good solution.

I modified the PHP code from fakenamegenerator.com's SSN generator to output a large list of SSNs of only five characters.

The PHP class is here:
http://www.phpclasses.org/browse/package/4575.html#download

John
Logged
former33t
Full Member
***
Offline Offline

Posts: 226


View Profile
« Reply #3 on: June 03, 2009, 03:56:55 PM »

I take it you are attacking an organization where you expect this type of password to be in use?

When pen testing an organization, I try to find the company's new employee security orientation and get the examples of what a strong password looks like.  Then I generate some permutations of those and go to town.  Amazing how many people use them even though it specifically says not to in the documentation.
Logged

Certifications: CREA, MCSE: Security, CCNA, Security+, other junk
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.053 seconds with 22 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.