Žilinská univerzita > Fakulta riadenia a informatiky > Katedra informačných sietí

THC Hydra - logon tools

web: http://freeworld.thc.org/thc-hydra/

Nástroj na lámanie hesiel. Vhodný pokiaľ máme zoznamy mien a hesiel, napr. default pass list pre zariadenia

 

Podporované tools:
TELNET, FTP, HTTP, HTTPS, HTTP-PROXY, SMB, SMBNT, MS-SQL, MYSQL, REXEC,
RSH, RLOGIN, CVS, SNMP, SMTP-AUTH, SOCKS5, VNC, POP3, IMAP, NNTP, PCNFS,
ICQ, SAP/R3, LDAP2, LDAP3, Postgres, Teamspeak, Cisco auth, Cisco enable,
LDAP2, Cisco AAA.

 

Priklad ako overiť telnet login s daným párom meno a heslo na adrese 192.168.10.20, výsledok zapísaný do súbory pass.txt

 

E:\Security\THC Hydra\hydra-5.4-win>hydra -l LOGIN_NAME-p PASSWORD -e n -e s -f -o pass.txt 
-f 192.168.10.20 telnet
Hydra v5.4 (c) 2006 by van Hauser / THC - use allowed only for legal purposes.
Hydra (http://www.thc.org) starting at 2009-09-24 14:36:25
[DATA] 3 tasks, 1 servers, 3 login tries (l:1/p:3), ~1 tries per task
[DATA] attacking service telnet on port 23
[STATUS] attack finished for 192.168.10.20 (waiting for childs to finish)
[23][telnet] host: 192.168.10.20   login: LOGIN_NAME password: PASSWORD
Hydra (http://www.thc.org) finished at 2009-09-24 14:36:26
Groups: