Live data from Hacker News

L0phtCrack Is Now Open Source

l0phtcrack.gitlab.io

121–130 of 151 posts

Re: L0phtCrack Is Now Open Source

#122
post #97
post #40

Earlier quoted context omitted.

It's making me nostalgic for all of the old tools - what was another one, ``john''? Although that seems to have been modernised. https://www.openwall.com/john/

And of course, the CDC's hilarity toolbox: Back Orifice. Being able to eject all the CD-ROM drives in a computer lab together was really worth it.

God I miss those days. And now I feel old, like the father I thought I'd never be. Nostalgic for an age that I thought was forever. But really, never was.

Re: L0phtCrack Is Now Open Source

#123

Earlier quoted context omitted.

you're doing something neat with your Us but I, unfortunately, came of age after lots of the cool times were over. All the hackers got jobs in industry and it feels like if I poke anything that isn't hackthebox I'll either A. have the FBI up my ass immediately or worse, B. have created a record somewhere of having committed one felony or another that will appear at an appropriate time for someone else and inappropria…

You've surely heard about Tor, socks proxies, VPNs, SSH tunnels.

This comes up at "have created a record somewhere of having committed one felony or another that will appear at an appropriate time for someone else and inappropriate time for me."

I.e. you make one opsec mistake now, nobody's perfect - and then many years later when someone will finally care, this will be used to identify you, there's loads of examples like that of investigations/convictions where the people did know how to use "Tor, socks proxies, VPNs, SSH tunnels" and used them properly almost always.

Re: L0phtCrack Is Now Open Source

#125

Earlier quoted context omitted.

Bad news is: a quantum computer will not crack hashes faster.

It would reduce the output space of a cryptographic hash by its square root. That would help speed up attacks would it not?

Needs waaaaaaay more qubits than exist in the world right now.

Re: L0phtCrack Is Now Open Source

#126
post #102

Earlier quoted context omitted.

Combination of 401k growth, having a six figure income, cryptocurrency investments, and early investment in AMD and TSLA and a few side income streams.

Sounds like you owe your success more to WallStreetBets than hacking.

Eh I mined a lot of it and it's thanks to my computer skills that I was able to do so. Most of it was from that.

Also my stock positions predate wsb by like 7 years.

Re: L0phtCrack Is Now Open Source

#127
post #116

I got expelled from high school because of this program. I'm a millionaire now though so shrug

I was a hair's breadth away from expulsion too - exfiltrated .sam files from a PC in the library on a 3.5" floppy. Seems to be quite common experience judging by this thread. Why did we all get caught? Smart enough to figure that out in your teens, dumb enough to think you can get away with it... In my case I was operating with a dumbass friend who left a "calling card" on one of the compromised machines.

To be honest I fessed up for no reason. All they knew was I logged in to some box. I could have made some stuff up about doing some legitimate work and I'd probably have gotten away with it. At the time I was extremely naive and dumb. My advice to kids is not to stop doing things but to simply downplay what you were doing. "No I wasn't hacking. I was securing the system." Etc. Come up with plausible reasons and the benefit of doubt will generally keep things from escalating beyond the IT staff. Once admins start talking about hacking you've lost the war of words.

It's as much social engineering as anything else.

Re: L0phtCrack Is Now Open Source

#128

Earlier quoted context omitted.

Yep, and the password was 'driver'.

Actually it was bhs-2020 still remember it after all these years

At my school the password was the person’s username. Someone guessed it one day. Which in hindsight was inevitable when the login screen was exposed to hundreds of bored kids every day.

Re: L0phtCrack Is Now Open Source

#129
post #52

Earlier quoted context omitted.

> I'm 28 ... adjunct professor ... We talk about this still. I'm a decade older, and am relieved to see this. > Hackers - the best hacking movie ever made :) Counterpoint: _Sneakers_: the thinking person's hacking movie.

I still vote for Wargames :-)

That’s got data encrypting algorithms, you’ll never get through that!

Re: L0phtCrack Is Now Open Source

#130
I haven't thought about Mudge in a long time. If you've ever worked cybersecurity for the government, or in general, you owe him, Brian Oblivion, Space Rogue and the other members of L0pht for opening the door. They were pioneers of responsible disclosure, and brought the problem to light when they testified to Congress in 98 that in 30 minutes they could shut down the Internet. He and the others had uncovered DoS, specifically a BGP DoS that would automatically cascade across the Internet.

Mudge was a musical prodigy and an alum of BBN, one of the key players in creating ARPAnet. His bio is fascinating, and you can find a good treatment of it here: https://www.cybersecurityeducationguides.org/peiter-zatko/

Post reply on HN