How to extract NTLM Hashes from Wireshark Captures for cracking with Hashcat

Поділитися
Вставка
  • Опубліковано 15 січ 2023
  • This videos shows how to filter a network traffic capture (pcap) to identify Net-NTLMv2 hashes and afterwards extract the relevant information to construct the correct format for cracking with Hashcat.
  • Наука та технологія

КОМЕНТАРІ • 16

  • @maloseevanschaba7343
    @maloseevanschaba7343 Місяць тому +1

    Perfect straight to the point,

  • @user-ty3iy8bk2l
    @user-ty3iy8bk2l 9 місяців тому +1

    Thanks for showing the packet capture! Awesome! Subbed

    • @embracethered
      @embracethered  9 місяців тому

      Thanks for the comment! Happy to hear the content is useful. 🙂

  • @yhytuncer
    @yhytuncer Рік тому +1

    Fun times ! You just got another subscriber my
    Friend

  • @vapeboss8161
    @vapeboss8161 10 місяців тому

    Thank you! You are good

  • @rivhaaken9763
    @rivhaaken9763 8 місяців тому +1

    Underrated! All im sayin.

    • @embracethered
      @embracethered  8 місяців тому

      Thanks for watching and commenting. Much appreciated! 🙂

  • @plaverty9
    @plaverty9 3 місяці тому +1

    I just tried this, but the only difference is I was capturing this information over HTTP instead of SMB. Does that make a difference? I ask because I was trying to generate a proof of concept where I controlled the username and password going in, but it wouldn't crack. I tried four different times and it didn't work. Is something different when these are captured over HTTP instead of an SMB connection?

    • @embracethered
      @embracethered  3 місяці тому

      Good question. First thought is that it should just work the same, but I haven't tried. Relaying def works, that I have done many times in past.

    • @plaverty9
      @plaverty9 3 місяці тому

      Thanks. I had a colleague try it too, and got the same result as I did. This is for a pentest proof of concept, so I’m not in position to relay unfortunately.

  • @sundowner12449
    @sundowner12449 Рік тому +1

    👌👌

  • @SecretCoder-gb9iq
    @SecretCoder-gb9iq 7 місяців тому

    Sir plz tell me how to extract password from handshake file via wireshark