Penetration testing commands for Cracking
Cracking involves the recovery of passwords and cryptographic keys through various methods such as brute force, dictionary attacks, and rainbow tables. This category highlights tools and techniques for effective password and hash cracking.
Name | Description | Price |
---|---|---|
bkcrack | Crack legacy zip encryption with Biham and Kocher's known plaintext attack | Free |
Hashcat | Hash cracking tool | Free |
longtongue | Password wordlist generator based on target information | Free |
Narthex | Modular personalized dictionary generator | Free |
PACK | A collection of utilities developed to aid in analysis of password lists in order to enhance password cracking through pattern detection of masks, rules, character-sets and other password characteristics | Free |
ComPP | Company Passwords Profiler helps making a bruteforce wordlist for a targeted company | Free |
Cracken | Password wordlist generator, Smartlist creation and password hybrid-mask | Free |
CrackQ | Hashcat cracking queue system, API and WebUI | Free |
crunch | Wordlist generator | Free |
GoCrack | Management frontend for hash cracking tools, supporting hashcat | Free |
graphcat | Generate graphs and charts based on password cracking results; supports hashcat and john the ripper potfile as well as ntds file | Free |
John The Ripper | Hash cracking tool | Free |
johnny | GUI frontend to John the Ripper | Free |
Kraken | Hashcat-based distributed password cracking system with WebUI; has a desktop client in addition | Free |
Ophcrack | Windows hash cracker based on rainbow tables | Free |
BEWGor | Bull's Eye Wordlist Generator, password wordlist generator based on target information | Free |
Bopscrk | Before Outset PaSsword CRacKing, password wordlist generator with exclusive features like lyrics based mode | Free |
CrackerJack | Hashcat WebUI; session management, mask generation, API, notifications, local and LDAP authentication | Free |
crackpkcs12 | Multithreaded program to crack PKCS#12 files (p12 and pfx extensions) | Free |
Duplicut | Remove duplicates from massive wordlist, without sorting it (for dictionary-based password cracking) | Free |
GAU | Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, Common Crawl, and URLScan for any given domain | Free |
GeoWordlists | Generate wordlists of passwords containing cities at a defined distance around the client city | Free |
Hashtopolis | Hashcat wrapper for distributed hashcracking | Free |
Hashview | Web-UI for managing, organizing, automating Hashcat commands/tasks | Free |
John the Ripper, Jumbo version | Hash cracking tool, community-enhanced version of John The Ripper | Free |
Kraker | Distributed password brute-force system, supports Hashcat | Free |
lyricpass | Tool to generate wordlists based on lyrics | Free |
Mentalist | Graphical tool for custom wordlist generation, can output rules compatible with Hashcat and John the Ripper | Free |
CeWL | Custom wordlist generator based on website crawling | Free |
cook | Wordlist generator: create permutations and combinations of words with predefined sets of extensions, words and patterns/function to create complex endpoints, wordlists and passwords | Free |
Cracklord | Scalable, pluggable, and distributed system for hash cracking, supports Hashcat | Free |
CrackStation | Pre-computed lookup tables to crack password hashes | Free |
CUPP | Common User Passwords Profiler, wordlist generator based on user profiling | Free |
elpscrk | Wordlist generator based on user profiling | Free |
Fitcrack | Hashcat-based distributed password cracking system with WebUI | Free |
hashcobra | Hash cracking tool using rainbow tables | Free |
HashKitty | Web interface for Hashcat | Free |
Hashpass | Hashcat WebUI; queuing, local authentication, SMS and email notifications, map integration | Free |
kh2hc | Convert OpenSSH known_hosts file hashed with HashKnownHosts to hashes crackable by Hashcat | Free |
npk | Distributed hash cracking platform meant to be deployed on AWS (Cognito, DynamoDB, S3) so you pay only when you have a task running | Free |
NTLM to password | NTLM hash lookup table, billions of passwords indexed | Free |
pnwgen | Phone number wordlist generator | Free |
PowerSniper | Password spraying script and helper for creating password lists | Free |
Wavecrack | Hashcat WebUI; asynchronous task, chain tasks, statistics, export, segregation, local and LDAP authentication | Free |
RubyHashcat | Command line wrapper, library, and REST API for oclHashcat | Free |
rulesfinder | Machine-learn password mangling rules; finds efficient password mangling rules (for John the Ripper or Hashcat) for a given dictionary and a list of passwords | Free |
Spraygen | Permutation-based password list generator | Free |
wordlistctl | Fetch, install and search wordlist archives from websites and torrent peers | Free |
pydictor | Multi-method password wordlist generator | Free |
WOG | Weakpass rule-based online generator; generates a wordlist based on a set of words entered by the user | Free |
TTPassGen | Flexible and scriptable password dictionary/wordlist generator | Free |
WebHashcat | Hashcat WebUI with distributed cracking sessions and analytics | Free |
wordlist.rb | Library for reading, combining, manipulating, and building wordlists, efficiently | Free |
wordlistgen | Generate context-specific wordlists for content discovery from lists of URLs or paths | Free |