Risk
10/28/2010
01:35 PM
50%
50%

Easy-To-Find Brute-Force Tools

Tools are available to create word lists that can be used for brute-force attacks to nab passwords.

Several free and open source tools are available to create word lists that can be used for brute-force attacks to obtain passwords of social network users. They include:

>> Custom Word List Generator: Security researcher Robin Wood created CeWL as a way to create a custom word list based on spidering a Web site. This functionality is perfect for quickly determining unique words on a social network profile. CeWL is available for download from Wood's Web site, in the Samurai Web Testing Framework, and within the popular BackTrack 4 penetration testing distribution.

>> RSMangler: Robin Wood's RSMangler complements word-list-generating utilities like CeWL. It takes a word list and generates mangled combinations and manipulations of those words. For example, from "tom, eston, social" RSMangler would output: tomeston, tomsocial, estontom, socialeston, socialtom. It can be downloaded from the RandomStorm site.

>> Associative Word List Generator: This site generates word lists based on search terms that are queried from the Web site using typical search engine techniques. For example, if you search for "tom, eston, agent0x0, zombies, spylogic, security, justice," AWLG will search the Internet for those terms and give you back a listing of relevant keywords.

>> Common Users Password Profiler: Muris Kurgas created this word-list-generation script that uses information gathered online to answer a series of questions CUPP asks. Based on those answers, CUPP generates a custom word list. This tool can be quite handy if an attacker has already found out significant information about a potential victim from a social network profile. CUPP is preinstalled in the BackTrack 4 penetration testing distribution.

>> Userpass.py Script: Created by Mark Baggett, this script automatically generates customized word lists for specific targets. For example, a Google search is launched to find LinkedIn profiles of employees at a target company. Then the script spiders any Web sites found in a user's LinkedIn profile. It pulls the user's profile picture and checks a Web site called "tineye" to determine if the picture matches others on the Internet. If it does, those sites are spidered for keyword information. Finally, all the spidered sites are run through CeWL to generate custom word lists. Userpass.py script can be downloaded from the PaulDotCom Web site.

Go to the main story:
Social Networks' Threat To Security

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-8802
Published: 2015-01-23
The Pie Register plugin before 2.0.14 for WordPress does not properly restrict access to certain functions in pie-register.php, which allows remote attackers to (1) add a user by uploading a crafted CSV file or (2) activate a user account via a verifyit action.

CVE-2014-9623
Published: 2015-01-23
OpenStack Glance 2014.2.x through 2014.2.1, 2014.1.3, and earlier allows remote authenticated users to bypass the storage quote and cause a denial of service (disk consumption) by deleting an image in the saving state.

CVE-2014-9638
Published: 2015-01-23
oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

CVE-2014-9639
Published: 2015-01-23
Integer overflow in oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (crash) via a crafted number of channels in a WAV file, which triggers an out-of-bounds memory access.

CVE-2014-9640
Published: 2015-01-23
oggenc/oggenc.c in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted raw file.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
If you’re a security professional, you’ve probably been asked many questions about the December attack on Sony. On Jan. 21 at 1pm eastern, you can join a special, one-hour Dark Reading Radio discussion devoted to the Sony hack and the issues that may arise from it.