Thursday, January 6, 2011

Aww Wat The Hell Is RainBow Table Now :P


Rainbow Table ? Is It Rainbow Crack ?
 
Rainbow tables are pre-computed hashes that existing hashes can be compared to.
Instead of having to brute force hash generate and comparison, a program simply loads the rainbow table and performs intelligent lookup.

This allows a program to easily and quickly search for matches without having to perform calculations each time.RainbowCrack is a general propose implementation of Philippe Oechslin’s faster time memory trade off technique.In short, the RainbowCrack tool is a hash cracker. A traditional brute force cracker try all possible plaintexts one by one in cracking time. It is time consuming to break complex password in this way. The idea of time-memory trade-off is to do all cracking time computation in advance and store the result in files so called “rainbow table”.

Basically these types of password crackers are working with pre-calculated hashes of ALL passwords available within a certain character space, be that a-z or a-zA-z or a-zA-Z0-9 etc
These files are called Rainbow Table(Just check this out on wiki atleast u can do dis :D)

You can find the official Rainbowcrack project here, where you can download the latest version of Rainbowcrack.



Kicked Off right in Eighties
In 1980 Martin Hellman described a cryptanalytic time-memory trade-off which reduces the time of cryptanalysis by using precalculated data stored in memory. This technique was improved by Rivest before 1982 with the introduction of distinguished points which drastically reduces the number of memory lookups during cryptanalysis. This improved technique has been studied extensively but no new optimisations have been published ever since

You are trading speed for memory and disk space, the Rainbow Tables can be VERY large.

Be warned though, Rainbow tables can be defeated by salted hashes, if the hashes are not salted however and you have the correct table, a complex password can be cracked in a few minutes rather than a few weeks or months with traditional Brute Forcing Techniques.

How Rainbow Tables work

Credits to kestas.kuliukas.com

Check Dis Out Here For the Complete Explainations .

Click Here To Follow The Link

So Where To Get These Rainbow Tables From ?

You can generate them yourself with RainbowCrack, this will take a long time, and a lot of diskspace.
Project Shmoo is offering downloads of popular Rainbow Tables via BitTorrent
 
http://rainbowtables.shmoo.com/
 
Software is available for use with Rainbow Tables ?
 
There is of course the original RainbowCrack as mentioned above
Then There Are :
 
Ophcrack

Ophcrack is a Windows password cracker based on a time-memory trade-off using rainbow tables. This is a new variant of Hellman’s original trade-off, with better performance

Cain & Abel
Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols.

L0phtcrack or LC5
LC5 is the latest version of L0phtCrack, the award-winning password auditing and recovery application used by thousands of companies worldwide.This is a COMMERCIAL product :(


 Freeware alternative to LC5 in the form of LCP

Like My Post ? Comment And Acknowledge :) Thanks


For Further Reading,
Dangerous Hacking, Tutorials

0 comments:

Post a Comment

 

Recent Posts

Blog Archive