LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-24-2009, 05:14 PM   #1
evil_empire
Member
 
Registered: Mar 2005
Distribution: Fedora Core 3
Posts: 176

Rep: Reputation: 31
password hash


Hi guys,
I'm trying to use john the ripper to crack my own password on my fc10. First I created the unshadowed file combining passwd and shadow. When I use john to crack it, it says "No password hashes loaded". One thing I 've noted is the hash for the password is very long. On my other systems, the hashes are shorter and I can crack those successfully using a fake worldlist( that contains my password) I created.
Can someone explain, whats going on? And how to do do it.

This is the the password hash from the system in question.
Code:
$6$lWLFQgAtFgueGjI/$ZGnAeITUnexp.3YrofEGBDxDzffhkCpcHUcCsi09j.ywdZcIAz...3Cnk89ZJvrZ4Y2VPsUtTk4oSFZjs4kS11
Can somebody tell me what format this is, and how to use john with this or someother way?
 
Old 04-24-2009, 06:35 PM   #2
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682
The fake word list was cheating. You should test the strength of your password without giving it the answer. Giving it the answer, it finished early so you don't know whether a cracker would be able to crack it using the same tool.

I don't see any colons, and the dots are throughing me. The "$6$" will indicate the password hash used. The characters between the second and third "$" are the salt.

The "$6$" is for the sha-512 hash. It looks like the results are uuencoded from a binary result.
Code:
https://lists.ubuntu.com/archives/ubuntu-devel/2008-August/026204.html
By the way, if that is the hash for your password, then change your password. It should be secret.
 
Old 04-24-2009, 07:25 PM   #3
ilikejam
Senior Member
 
Registered: Aug 2003
Location: Glasgow
Distribution: Fedora / Solaris
Posts: 3,109

Rep: Reputation: 97
John doesn't do SHA at the moment:

-----
Out of the box, John supports (and autodetects) the following Unix crypt(3) hash types: traditional and double-length DES-based, BSDI extended DES-based, FreeBSD MD5-based (now also used on Linux and in Cisco IOS), and OpenBSD Blowfish-based (now also used on some Linux distributions). Also supported out of the box are Kerberos/AFS and Windows LM (DES-based) hashes.
-----

I wouldn't be surprised if there are patches floating around to support SHA, though.

Dave
 
Old 04-24-2009, 10:01 PM   #4
evil_empire
Member
 
Registered: Mar 2005
Distribution: Fedora Core 3
Posts: 176

Original Poster
Rep: Reputation: 31
Thanks a lot Dave, I found a patched version of john that is supposed to support SHA1. I don't know if that does the trick. I'll test it later.

Thank a lot to jschiwal too for the information.

I'll keep u guys updated.
 
Old 04-25-2009, 07:16 AM   #5
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682
SHA-1 & SHA-512 are two different hashes.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
What is used to create the shadow password hash?? helptonewbie Linux - General 11 08-17-2009 02:02 AM
Restoring Password Hash zok Linux - Server 3 04-29-2008 12:22 PM
What type of password hash is this ? memo007 Linux - Security 7 12-26-2007 02:34 AM
Password Hash Query aml1973 Linux - Security 1 12-03-2007 07:50 AM
Change Password Hash Algorithm Trano Linux - Security 1 08-23-2005 07:48 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 12:23 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration