-
November 26th, 2004, 09:21 AM
#1
Member
sniffing network
When I am working in netowrk, how do they find my password. Is there any way they can sniff my password in windows network?
I use winxp sp2, NTLM authentication enabled. Even is they sniff will they be able to decript the password.
please clarify my doubts.
-
November 26th, 2004, 01:13 PM
#2
Yes, it is possible to sniff and crack your password. There are plenty of tools out there to do this.
LC5: http://www.atstake.com/products/lc/
Cain and Abel: http://www.oxid.it/
KerbCrack: http://ntsecurity.nu/toolbox/kerbcrack/
They are just a few of the many that can break your password after captured.
Quitmzilla is a firefox extension that gives you stats on how long you have quit smoking, how much money you\'ve saved, how much you haven\'t smoked and recent milestones. Very helpful for people who quit smoking and used to smoke at their computers... Helps out with the urges.
-
November 26th, 2004, 06:27 PM
#3
Member
Wonderful.
Thank you, I have tried LC5, Kerbcrack & Kerbsniff. I will try cain&able.
LC5 has the ability to sniff SMB if the network is broadcast network, it dose not work if it is switched network. I dont think Kerbcrack & Kerbsniff can be used to sniff all kinds of authentication e.g., ssl, https, ftp etc.,
But going through the description of Cain&able it seems it has wider applicablity than the other two applications. Let me try out.
Any way thank you very much.
-
November 26th, 2004, 07:59 PM
#4
You can use those sniffers on a switched lan. You just have to use something like ettercap before to flood the arp tables. While using ettercap, you can use the other programs to sniff too.
Quitmzilla is a firefox extension that gives you stats on how long you have quit smoking, how much money you\'ve saved, how much you haven\'t smoked and recent milestones. Very helpful for people who quit smoking and used to smoke at their computers... Helps out with the urges.
-
November 26th, 2004, 08:01 PM
#5
Why dont you just ethereal and sniff all the packets going in and our of the network you can fiter by mac address if you only want a sertin node.
-
December 5th, 2004, 02:17 PM
#6
Member
If want to get a really good sniffer, get Ethereal here at http://www.ethereal.com/download.html.
-
December 5th, 2004, 03:55 PM
#7
You can also try IRIS . I like the GUI interface of the software.
One machine can do the work of fifty ordinary men. No machine can do the work of one extraordinary man!
-
December 6th, 2004, 03:08 AM
#8
Member
Thank you all.
I will try all you said.
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|