Monday, June 8, 2009

L0pth iz Back!

You read it correctly. The great password cracking tool is back in action. Many of you may remember this tool. It worked great and I know a lot of people that had it previously that still used it to this day. The tool was created by the L0pthcrack team some years ago. This was purchased by @stake which was then purchased by Symantec. For some reason at that time the tool disappeared from availability. This was a sad time in password cracking history. The good news is that it is now back and better than ever. I haven't installed it yet, as you may know I'm due to get my new Mac today and will probably reinstall this laptop with Windows 7 to get better performance. From what I am reading thought some of the new features are:

"
L0phtCrack 6 is packed with powerful features such as scheduling, hash extraction from 64 bit Windows versions, multiprocessor algorithms, and networks monitoring and decoding. Yet it is still the easiest to use password auditing and recovery software available.

Password Scoring
L0phtCrack 6 provides a scoring metric to quickly assess password quality. Passwords are measured against current industry best practices, and are rated as Strong, Medium, Weak, or Fail.

Pre-computed Dictionary Support
Pre-computed password files is a must have feature in password auditing. L0phtCrack 6 supports pre-computed password hashes. Password audits now take minutes instead of hours or days.

Windows & Unix Password Support
L0phtCrack 6 imports and cracks Unix password files. Perform network audits from a single interface.

Remote password retrieval
L0phtCrack 6 has a built-in ability to import passwords from remote Windows, including 64-bit versions of Vista, Windows 7, and Unix machines, without requiring a third-party utility.

Scheduled Scans
System administrators can schedule routine audits with L0phtCrack 6. Audits can be performed daily, weekly, monthly, or just once, depending on the organization's auditing requirements.

Remediation
L0phtCrack 6 offers remediation assistance to system administrators on how to take action against accounts that have poor passwords. Accounts can be disabled, or the passwords can be set to expire from within the L0phtCrack 6 interface. Remediation works for Windows user accounts only.

Updated Vista/Windows 7 Style UI
The user interface is improved and updated. More information is available about each user account, including password age, lock-out status, and whether the account is disabled, expired, or never expires. Information on L0phtCrack 6's current session is provided in an "immediate window" with a reporting tab providing up-to-the-minute status of the current auditing session."

To learn more check out their page at L0phtCrack. I'm going to run some benchmarks on this guy this coming weekend. I'm probably gonna put it up against 0phcrack and John the Ripper. Unfortunately, I do not have a 64bit machine to test with but the new Mac is multi core so we can see how much it can take advantage of it. That is if it runs well in a virtual environment as I don't see a Mac version.

No comments:

Post a Comment