Polynomial Grandmaster Cheater
Reputation: 5
Joined: 17 Feb 2008 Posts: 524 Location: Inside the Intel CET shadow stack
|
Posted: Tue Sep 16, 2008 5:50 pm Post subject: |
|
|
If you're on the network with the target machine, run Cain & Abel with network sniffer and "Downgrade NTLM Auth" enabled. When a user logs onto the target machine, the NTLM hash of the user's password is to each machine on the network. Cain asks the target machine to resend the password using an old-style authentication, which it then cracks within milliseconds and steals their password.
You can also boot into a Knoppix Live CD (or any other Linux Live distro) and read all of the files on the hard drive, ignoring all permissions.
|
|