At the beginning of a sunny Monday morning earlier this month, I had never cracked a password. By the end of the day, I had cracked 8,000. Even though I knew password cracking was easy, I didn't know it was ridiculously easy—well, ridiculously easy once I overcame the urge to bash my laptop with a sledgehammer and finally figured out what I was doing.
My journey into the Dark-ish Side began during a chat with our security editor, Dan Goodin, who remarked in an offhand fashion that cracking passwords was approaching entry-level "script kiddie stuff." This got me thinking, because—though I understand password cracking conceptually—I can't hack my way out of the proverbial paper bag. I'm the very definition of a "script kiddie," someone who needs the simplified and automated tools created by others to mount attacks that he couldn't manage if left to his own devices. Sure, in a moment of poor decision-making in college, I once logged into port 25 of our school's unguarded e-mail server and faked a prank message to another student—but that was the extent of my black hat activities. If cracking passwords were truly a script kiddie activity, I was perfectly placed to test that assertion.
It sounded like an interesting challenge. Could I, using only free tools and the resources of the Internet, successfully:
Find a set of passwords to crack
Find a password cracker
Find a set of high-quality wordlists and
Get them all running on commodity laptop hardware in order to
Successfully crack at least one password
In less than a day of work?
Read More Here
How I became a password cracker
- *BlackFox
- Forum Legend
- Posts: 7921
- Joined: Wed Sep 03, 2008 12:55 pm
- Quick Reply: Yes
- Location: Off Topic
How I became a password cracker
Cracking passwords is officially a "script kiddie" activity now.

- w00t
- Frequent Member
- Posts: 1097
- Joined: Tue May 08, 2007 11:37 am
- Quick Reply: Yes
- Location: On my pirate ship
- Contact:
Re: How I became a password cracker
Within the hour we will all be hacked?
-------------------------------
sig needed, d0h
sig needed, d0h
- Aventus
- Active Member
- Posts: 500
- Joined: Tue Oct 02, 2012 1:25 pm
- Quick Reply: Yes
- Location: In a mound of car parts and grease
Re: How I became a password cracker
God damn Skiddies. Thats why you make your password with lots of different characters.
- _Dutchy_
- Frequent Member
- Posts: 1346
- Joined: Tue Apr 22, 2008 11:57 am
- Quick Reply: Yes
- Location: Netherlands
Re: How I became a password cracker
Password cracking is really easy, but can be easly avoided by not using words in your password
Random numbers and letters will force someone to brute force it wich would take allot longer then simply using a wordlist.
Random numbers and letters will force someone to brute force it wich would take allot longer then simply using a wordlist.
- w00t
- Frequent Member
- Posts: 1097
- Joined: Tue May 08, 2007 11:37 am
- Quick Reply: Yes
- Location: On my pirate ship
- Contact:
Re: How I became a password cracker
For a long time I used the word mijnwachtwoord for a password :') It means mypassword in dutch.
-------------------------------
sig needed, d0h
sig needed, d0h
- LillDev!l
- Addicted Member
- Posts: 2587
- Joined: Sun Aug 19, 2007 9:38 pm
- Quick Reply: Yes
- Location: OTL&OG
Re: How I became a password cracker
w00t wrote:For a long time I used the word mijnwachtwoord for a password :') It means mypassword in dutch.
A teacher of mine had 'qwerty' as his password. Nobody would ever be able to notice that when he types it, right ?...

- CrimsonNuker
- Dom's Slut
- Posts: 13791
- Joined: Sun Aug 06, 2006 3:31 am
- Quick Reply: Yes
- Location: guildwars2
- w00t
- Frequent Member
- Posts: 1097
- Joined: Tue May 08, 2007 11:37 am
- Quick Reply: Yes
- Location: On my pirate ship
- Contact:
Re: How I became a password cracker
LillDev!l wrote:w00t wrote:For a long time I used the word mijnwachtwoord for a password :') It means mypassword in dutch.
A teacher of mine had 'qwerty' as his password. Nobody would ever be able to notice that when he types it, right ?...
Once at school I recorded my teacher (who was also a server admin) typing his username and password. Afterwards we played it in slomo and we knew his password. :')
-------------------------------
sig needed, d0h
sig needed, d0h
- heroo
- Forum Legend
- Posts: 6618
- Joined: Sat Sep 30, 2006 12:56 pm
- Quick Reply: Yes
- Location: Off Topic
Re: How I became a password cracker
Some retard once run a program on our highschool where he could see everything anyone typed. It wasn't really a hack, but rather a program that showed all the letters someone typed on a computer that was connected to our schoolnetwork. We obtained password of 6 of our teachers and of the director of our entire school community (our school had 4 different locations in 2 different towns). We logged on to their school e-mails and obtained 7 tests for 4 different courses. However, the real treasure turned out to be the school's director e-mail. The dude had an email from a medical clinic that made penis enlargements possible. First we thought it was spam, but then we discovered he had sent them multiple e-mails. He eventually enlarged his penis and ''it had helped him and his wife alot''. Also one time we got the list of all the teachers that would be fired next year. Funny thing is that the teachers themselfes didn't even know it themselfes. And it was fun to read all the different problems between teachers. We accessed is e-mail for 2 years and knew litereally everything that was going on in the school, it was fun. And the guy who run that program got expelled and we graduated with LOLZ!
''When I die, make sure they bury me upside down, so that the world can kiss my ass.''
- _Dutchy_
- Frequent Member
- Posts: 1346
- Joined: Tue Apr 22, 2008 11:57 am
- Quick Reply: Yes
- Location: Netherlands
Re: How I became a password cracker
heroo wrote:Some retard once run a program on our highschool where he could see everything anyone typed. It wasn't really a hack, but rather a program that showed all the letters someone typed on a computer that was connected to our schoolnetwork. We obtained password of 6 of our teachers and of the director of our entire school community (our school had 4 different locations in 2 different towns). We logged on to their school e-mails and obtained 7 tests for 4 different courses. However, the real treasure turned out to be the school's director e-mail. The dude had an email from a medical clinic that made penis enlargements possible. First we thought it was spam, but then we discovered he had sent them multiple e-mails. He eventually enlarged his penis and ''it had helped him and his wife alot''. Also one time we got the list of all the teachers that would be fired next year. Funny thing is that the teachers themselfes didn't even know it themselfes. And it was fun to read all the different problems between teachers. We accessed is e-mail for 2 years and knew litereally everything that was going on in the school, it was fun. And the guy who run that program got expelled and we graduated with LOLZ!
We've got a awsome Security/Programing teacher. He was unhappy with our new school's roster so he encouraged us to hack it. With approvel of the director ofcourse. So far we've hacked it 3 times and got 3 days off because of it

Re: How I became a password cracker
w00t wrote:For a long time I used the word mijnwachtwoord for a password :') It means mypassword in dutch.
There are word list dictionaries for all sorts of different language...not just English...

_________________________________________________
BOW Full STR Fire level 102 -- ON A LONG BREAK..POSSIBLY FOREVER
Re: How I became a password cracker
heroo wrote:Some retard once run a program on our highschool where he could see everything anyone typed. It wasn't really a hack, but rather a program that showed all the letters someone typed on a computer that was connected to our schoolnetwork. We obtained password of 6 of our teachers and of the director of our entire school community (our school had 4 different locations in 2 different towns). We logged on to their school e-mails and obtained 7 tests for 4 different courses. However, the real treasure turned out to be the school's director e-mail. The dude had an email from a medical clinic that made penis enlargements possible. First we thought it was spam, but then we discovered he had sent them multiple e-mails. He eventually enlarged his penis and ''it had helped him and his wife alot''. Also one time we got the list of all the teachers that would be fired next year. Funny thing is that the teachers themselfes didn't even know it themselfes. And it was fun to read all the different problems between teachers. We accessed is e-mail for 2 years and knew litereally everything that was going on in the school, it was fun. And the guy who run that program got expelled and we graduated with LOLZ!
That's a great story indeed...

_________________________________________________
BOW Full STR Fire level 102 -- ON A LONG BREAK..POSSIBLY FOREVER
- Toshiharu
- Senior Member
- Posts: 4222
- Joined: Fri Feb 15, 2008 1:55 am
- Quick Reply: Yes
- Location: Nowhere
Re: How I became a password cracker
Find a set of high-quality wordlists and
That's why you do not use a word that exists by itself. Using a phrase/sentence is far harder to crack, but easier to remember than random passwords where they encourage you to use like %jK1&2js_9 assuming the system allows those characters.
- Fiction
- Advanced Member
- Posts: 2147
- Joined: Sun Mar 23, 2008 11:49 am
- Quick Reply: Yes
- Location: Dead.(No Longer With Us)
Re: How I became a password cracker
heroo wrote:Some retard once run a program on our highschool where he could see everything anyone typed. It wasn't really a hack, but rather a program that showed all the letters someone typed on a computer that was connected to our schoolnetwork. We obtained password of 6 of our teachers and of the director of our entire school community (our school had 4 different locations in 2 different towns). We logged on to their school e-mails and obtained 7 tests for 4 different courses. However, the real treasure turned out to be the school's director e-mail. The dude had an email from a medical clinic that made penis enlargements possible. First we thought it was spam, but then we discovered he had sent them multiple e-mails. He eventually enlarged his penis and ''it had helped him and his wife alot''. Also one time we got the list of all the teachers that would be fired next year. Funny thing is that the teachers themselfes didn't even know it themselfes. And it was fun to read all the different problems between teachers. We accessed is e-mail for 2 years and knew litereally everything that was going on in the school, it was fun. And the guy who run that program got expelled and we graduated with LOLZ!
That's a keylogger, or a RAT. Either way, he could have had it self-destruct and nobody would have known anything about it, other than the other students that were in on it. I prefer to use this method because it doesn't matter how complex ones password is, if they aren't running a key scrambler/encryptor, it's as easy as reading a notepad with their information on it. Best part is, you can send them through img files and pretty much anything else, so great for getting someone to download through email. (Obviously you have to mask your email as one of their friends or family, so they'll trust it, but FB makes this way easier)
Anyways, I have a PDF that I can upload, and you guys should download and read all about this hacking stuff.

- Gaigemasta
- Site Contributor
- Posts: 4474
- Joined: Sun Dec 24, 2006 3:12 pm
- Quick Reply: Yes
- Location: off topic
- Contact:
Re: How I became a password cracker
Password cracking was never really hard, just not practical until brute force methods came out. Even then they were really slow until OpenCL and Cuda support came about. Social engineering is the real problem. Once they get into the databases and php (for hash methods) you better be careful. Really as long as you don't md5 alone your fine. MD5+SHA1 is usually a sufficient cc details but I usually do md5 x100 sha1 x20 and some randomly added characters in between.
Re: How I became a password cracker
I'm currently using some App (root needed) on Android (Nexus4
) that let's me "hijack" anyone who's on the WiFi I'm currently on. Needless to say I troll everyone's Facebook in my 400 student bio lecture theatre. Not exactly password cracking but just to add to how easy it is to steal now.
P.S: I'm not a dick though, I've only used the app on a few occasions
P.S: I'm not a dick though, I've only used the app on a few occasions

ExSoldier/Skyve/Loki
what is life even
- Gaigemasta
- Site Contributor
- Posts: 4474
- Joined: Sun Dec 24, 2006 3:12 pm
- Quick Reply: Yes
- Location: off topic
- Contact:
Re: How I became a password cracker
Gaigemasta wrote:you talking about faceniff?
DroidSheep

ExSoldier/Skyve/Loki
what is life even
- The Invisible
- Addicted Member
- Posts: 2626
- Joined: Sun Jan 23, 2011 1:28 pm
- Quick Reply: Yes
- Location: Home ._.
Re: How I became a password cracker
Interesting, really interesting.
Don't know why, but i changed most of my passwords today while reading this to two passwords (instead of 5), guess that they are moderately tough and i don;t want ti forget them.
Don't know why, but i changed most of my passwords today while reading this to two passwords (instead of 5), guess that they are moderately tough and i don;t want ti forget them.
So in the first week in college i went with jeans and the pajama's shirt. Didn't notice what i was wearing till after i returned home.






