EH-Net
May 18, 2013, 01:43:26 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: XP Password Cracking using IEEE-1394 - Which is the tool?  (Read 8719 times)
0 Members and 1 Guest are viewing this topic.
Manu Zacharia (-M-)
Sr. Member
****
Offline Offline

Posts: 393


c0c0n Hacking Conference - where hackers unite


View Profile WWW
« on: March 08, 2008, 09:00:57 AM »

Hi All,

I was listening to the TechTarget Weekly Podcast, where they were talking about a password cracking tool for Windows XP using the IEEE-1394 port. Do you have any idea about this tool. They say that its a linux based tool.

I Could find the following link.

http://freerepublic.com/focus/f-chat/1981136/posts

Any more links or info do we have?
Logged

Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)², C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
eth3real
Sr. Member
****
Offline Offline

Posts: 309



View Profile WWW
« Reply #1 on: March 08, 2008, 11:50:36 AM »

I saw this on Hackszine.com a few days ago.
http://www.hackszine.com/blog/archive/2008/03/ram_dump_over_firewire.html

It looks like the name of the tool is winlockpwn. I haven't got a chance to try it out, yet, since I have no PCs with FireWire.
Here is the link to the project site.
http://storm.net.nz/projects/16
Logged

Put that in your pipe and grep it!
LSOChris
Guest
« Reply #2 on: March 08, 2008, 08:45:58 PM »

yup thats the right link.  getting the libraries installed is straightforward but i havent been able to get it to work on ubuntu, some sort of python memory read issue.
Logged
eth3real
Sr. Member
****
Offline Offline

Posts: 309



View Profile WWW
« Reply #3 on: March 09, 2008, 12:36:58 PM »

This is something I really have to try out soon.

My laptop at work has a FireWire port, but I disabled it a long time ago since I don't use it. It's time for me to dig up a cable and test some of the workstations around the office. Cool

One could also get a PCMCIA IEE-1394 card for their laptop to try this out.

I would be curious to see if this will work with a Windows laptop running andLinux (see http://www.andlinux.org/). I will try this out some time this week.
Logged

Put that in your pipe and grep it!
eth3real
Sr. Member
****
Offline Offline

Posts: 309



View Profile WWW
« Reply #4 on: May 22, 2008, 02:37:35 AM »

I was just curious if anybody has been able to try this out, or if this type of vulnerability is being addressed in pentests, etc., or if Microsoft has corrected this problem yet.

It has been a dead topic for a while, but I still think it shows some potential. I haven't yet been able to try it myself, though.
Logged

Put that in your pipe and grep it!
LSOChris
Guest
« Reply #5 on: May 22, 2008, 10:33:31 AM »

its regarded as a feature not a vulnerability.  there are some tutorials out there using helix to get this going and someone got it going on BT3 as well.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines Valid XHTML 1.0! Valid CSS!
Page created in 0.072 seconds with 20 queries.