Basic cracking 10-13-2012, 09:10 PM
#1
Basics of Cracking
Here I will write about basic concepts of cracking. Let's start!
Main Principle of Cracking
Every new cracker wants to crack a particular account, which is usually difficult. Understanding this fact is a key step to becoming successful cracker. The main principle of cracking is trying as many valid users as possible. It is better to have 20k user accounts to try to crack than to have 3 user accounts with 20k passwords.
Dumb Internet Users
Most people on the internet do not take security seriously. There is a misconceived notion that the internet is secure and anonymous. This lack of concern leads the guessable and common passwords. Common words and common names are usually possible passwords. Another thing is that users use the same password for all accounts (bank, credit cards, email...)
About Passwords
Choosing a password to crack with is critical of your success. Passwords like "fsdaf432Fdsfr" are not a good idea to crack with. There is a chance that you may be successful eventually, but it's still a waste of time. Think about what the most people have in their passwords. Common names, animals, sports teams, colors...
Selective Passwords - Passwords that are applicable only to a single website. If you are attempting to crack Facebook accounts, passwords like facebook, fb, FB, FACEBOOK are likely to be successful. If you would like to go further go into why people use Facebook, you can logically come to the conclusion that people use it for friends, buddies, etc... The websites name is one of the most common passwords used by users because its easy to remember. Most people are too lazy to put any effort in a password, so people will rarely capitalize a password any part of the password. Lowercase passwords are by far the most popular.
Username as password - Many users use their usernames as the password. This is one of the most successful method for cracking
Try other sites with cracked accounts - Many users have two accounts with the same password. The idea is when you crack an account, you should look into the account's information, and then find the user's email address. If you have one of their account's passwords, it is possible that it's the same as their email password.
Combo Lists
Combo lists are a list of usernames and passwords that have already been cracked for other sites. These are highly successful, but the success can be short lived if other users have access to the same combo list.
Apex cracking tutorial
This video isn't mine, so all credits go to them.
Create combo list
You will need 2 tools. These are Athena and Raptor 3.
Download
Virus scan
First, start Athena and check "search Google cache" and "save sites." Then click start.
Wait 10-20 minutes and click stop now. Go to the Athena folder and you will see a file called "login.txt." This is file with captured logins.
Now open Raptor 3. Go to File > Open, and in the dialog open "logins.txt." In Tools click "Remove Duplicates". Go to Filters in Tools > Click on "Custom Filters" tab right click in empty spot > click "Add" in filter name type "bangbros" > Action: Keep If > Filter Subject: Line > Condition: Has > Amount: Any > Filter: What: bangbros > Click Ok. Check the new filter and click the filter button under the empty spot in Generators. Select "Pass Leecher" > Right click the empty spot > Click on "Add" > Select logins.txt from desktop > click the "Leech" button under the empty spot. Now go to File > Save All > Save the file as "Combo.txt."
It's very easy.
Here I will write about basic concepts of cracking. Let's start!
Main Principle of Cracking
Every new cracker wants to crack a particular account, which is usually difficult. Understanding this fact is a key step to becoming successful cracker. The main principle of cracking is trying as many valid users as possible. It is better to have 20k user accounts to try to crack than to have 3 user accounts with 20k passwords.
Dumb Internet Users
Most people on the internet do not take security seriously. There is a misconceived notion that the internet is secure and anonymous. This lack of concern leads the guessable and common passwords. Common words and common names are usually possible passwords. Another thing is that users use the same password for all accounts (bank, credit cards, email...)
About Passwords
Choosing a password to crack with is critical of your success. Passwords like "fsdaf432Fdsfr" are not a good idea to crack with. There is a chance that you may be successful eventually, but it's still a waste of time. Think about what the most people have in their passwords. Common names, animals, sports teams, colors...
Selective Passwords - Passwords that are applicable only to a single website. If you are attempting to crack Facebook accounts, passwords like facebook, fb, FB, FACEBOOK are likely to be successful. If you would like to go further go into why people use Facebook, you can logically come to the conclusion that people use it for friends, buddies, etc... The websites name is one of the most common passwords used by users because its easy to remember. Most people are too lazy to put any effort in a password, so people will rarely capitalize a password any part of the password. Lowercase passwords are by far the most popular.
Username as password - Many users use their usernames as the password. This is one of the most successful method for cracking
Try other sites with cracked accounts - Many users have two accounts with the same password. The idea is when you crack an account, you should look into the account's information, and then find the user's email address. If you have one of their account's passwords, it is possible that it's the same as their email password.
Combo Lists
Combo lists are a list of usernames and passwords that have already been cracked for other sites. These are highly successful, but the success can be short lived if other users have access to the same combo list.
Apex cracking tutorial
This video isn't mine, so all credits go to them.
Create combo list
You will need 2 tools. These are Athena and Raptor 3.
Download
Code:
http://www23.zippyshare.com/v/48735867/file.html
Code:
https://www.virustotal.com/file/02667d35e87e875af295cb977fb72e52b4a2be86c83c296aad4d2bb564806b82/analysis/1350159009/
Wait 10-20 minutes and click stop now. Go to the Athena folder and you will see a file called "login.txt." This is file with captured logins.
Now open Raptor 3. Go to File > Open, and in the dialog open "logins.txt." In Tools click "Remove Duplicates". Go to Filters in Tools > Click on "Custom Filters" tab right click in empty spot > click "Add" in filter name type "bangbros" > Action: Keep If > Filter Subject: Line > Condition: Has > Amount: Any > Filter: What: bangbros > Click Ok. Check the new filter and click the filter button under the empty spot in Generators. Select "Pass Leecher" > Right click the empty spot > Click on "Add" > Select logins.txt from desktop > click the "Leech" button under the empty spot. Now go to File > Save All > Save the file as "Combo.txt."
It's very easy.