{"id":2457,"date":"2024-03-19T02:21:06","date_gmt":"2024-03-18T18:21:06","guid":{"rendered":"http:\/\/www.ccwifi.cc\/blogs\/?p=2457"},"modified":"2024-03-19T02:21:06","modified_gmt":"2024-03-18T18:21:06","slug":"purplerain%e4%b8%80%e7%a7%8d%e6%96%b0%e5%9e%8b%e5%93%88%e5%b8%8c%e7%a0%b4%e8%a7%a32392","status":"publish","type":"post","link":"https:\/\/www.ccwifi.cc\/blogs\/2024\/03\/19\/purplerain%e4%b8%80%e7%a7%8d%e6%96%b0%e5%9e%8b%e5%93%88%e5%b8%8c%e7%a0%b4%e8%a7%a32392\/","title":{"rendered":"Purple Rain\uff1a\u4e00\u79cd\u65b0\u578b\u54c8\u5e0c\u7834\u89e3\u65b9\u6cd5"},"content":{"rendered":"<div>\n<p>\u5728\u7ebfwifi\u8dd1\u5305 \u91d1\u521a\u5305\u8dd1\u5305 cap\u8dd1\u5305 hccapx ewsa\u5728\u7ebf \u5c31\u6765 <strong><a href=\"https:\/\/ccwifi.cc\" target=\"_blank\" rel=\"noopener\">\u63e1\u624b\u5305\u8dd1\u5305<\/a><\/strong><\/p>\n<p>\u5404\u4f4d\u597d \u53c8\u89c1\u9762\u4e86 \u6211\u662f\u66f9\u64cd \u4eca\u5929\u7ed9\u5927\u5bb6\u5e26\u6765\u4e00\u7bc7\u65b0\u7684\u6559\u7a0b<\/p>\n<p>\u5e0c\u671b\u5404\u4f4d\u7ec6\u5fc3\u5b66\u4e60 \u4f4e\u8c03\u7528\u7f51<\/p>\n<\/div>\n<p><img decoding=\"async\" src=\"http:\/\/www.ccwifi.cc\/blogs\/wp-content\/uploads\/2024\/03\/1710786059692_0.jpg\" alt=\"hashcat\u4f7f\u7528\u65b9\u6cd5\"><img decoding=\"async\" src=\"http:\/\/www.ccwifi.cc\/blogs\/wp-content\/uploads\/2024\/03\/1710786059692_1.gif\" alt=\"hashcat\u4f7f\u7528\u65b9\u6cd5\"><\/p>\n<p>\u4e00\u3001\u5f15\u8a00<br \/>\n\u5728\u8fdb\u884c\u6e17\u900f\u6d4b\u8bd5\u65f6\uff0c\u6211\u4eec\u6709\u65f6\u4f1a\u9047\u5230\u8fd9\u6837\u7684\u60c5\u51b5\uff1a\u5c3d\u7ba1\u6211\u4eec\u5c1d\u8bd5\u4e86\u5404\u79cd\u5bc6\u7801\u7834\u89e3\u653b\u51fb\u6280\u672f\uff0c\u4f46\u5374\u6beb\u65e0\u8fdb\u5c55\u3002\u5373\u4f7f\u6211\u4eec\u67e5\u9605\u4e86\u5404\u79cd\u7b14\u8bb0\u3001\u5206\u6790\u4e86\u5bc6\u7801\u7b56\u7565\u548c\u7834\u89e3\u7ed3\u679c\uff0c\u4e5f\u6ca1\u6709\u4efb\u4f55\u5e2e\u52a9\u3002\u8fd9\u65f6\uff0c\u6211\u4eec\u9700\u8981\u521b\u65b0\u7684\u601d\u8def\uff0c\u6700\u597d\u7684\u65b9\u6cd5\u662f\u751f\u6210\u968f\u673a\u5bc6\u7801\u6765\u8fdb\u884c\u653b\u51fb\u3002\u5728\u8fd9\u79cd\u60c5\u51b5\u4e0b\uff0cPurple Rain attack\uff08\u7d2b\u96e8\u653b\u51fb\uff09\u53ef\u4ee5\u5e2e\u52a9\u6211\u4eec\u6253\u7834\u50f5\u5c40\u3002Purple Rain attack\u7684\u4e00\u4e2a\u4f18\u70b9\u662f\u5b83\u53ef\u4ee5\u5728\u51e0\u4e4e\u65e0\u9650\u7684\u65f6\u95f4\u5185\u8fd0\u884c\uff0c\u552f\u4e00\u7684\u9650\u5236\u662f\u63d0\u4f9b\u7684\u5b57\u5178\u5927\u5c0f\u3002\u5982\u679c\u6211\u4eec\u6ca1\u6709\u8db3\u591f\u7684\u65f6\u95f4\u6765\u4ed4\u7ec6\u9009\u62e9\u7834\u89e3\u6280\u672f\uff0c\u53ef\u4ee5\u8003\u8651\u4f7f\u7528\u8fd9\u79cd\u5373\u7528\u578b\u653b\u51fb\u65b9\u6cd5\uff0c\u4eab\u53d7\u8fd9\u79cd&#8221;\u4e00\u52b3\u6c38\u9038&#8221;\u7684\u54c8\u5e0c\u7834\u89e3\u8fc7\u7a0b\u3002<\/p>\n<p>Purple Rain attack\u5230\u5e95\u80fd\u505a\u4ec0\u4e48\u5462\uff1f\u5b83\u53ef\u4ee5\u5e2e\u52a9\u6211\u4eec\u60f3\u51fa\u81ea\u5df1\u4ece\u672a\u60f3\u5230\u7684\u5bc6\u7801\u6a21\u5f0f\u548c\u89c4\u5219\u96c6\u3002\u5c06\u53ef\u7528\u7684\u6a21\u5f0f\u548c\u5bc6\u7801\u7ec4\u5408\u4f7f\u7528\u662f\u975e\u5e38\u6709\u6548\u7684\u65b9\u6cd5\uff0c\u5373\u4f7f\u53ea\u6709\u4e00\u4e2a\u7b80\u5355\u7684\u5b57\u5178\uff0c\u6211\u4eec\u4e5f\u53ef\u4ee5\u572824\u5c0f\u65f6\u5185\u8f7b\u677e\u7834\u89e375%\u7684LinkedIn\u6570\u636e\u3002\u5f53\u7136\uff0c\u4e0d\u662f\u6240\u6709\u7684\u6a21\u5f0f\u548c\u5bc6\u7801\u90fd\u662f\u6709\u6548\u7684\uff0c\u6211\u4eec\u53ef\u80fd\u4f1a\u82b1\u8d39\u5f88\u957f\u65f6\u95f4\u5374\u65e0\u6cd5\u83b7\u5f97\u5173\u952e\u7684\u54c8\u5e0c\u7ed3\u679c\u3002\u4f46\u662f\uff0c\u60f3\u8c61\u4e00\u4e0b\uff0c\u5728\u957f\u65f6\u95f4\u7684\u653b\u51fb\u8fc7\u7a0b\u4e2d\uff0c\u67d0\u4e00\u5929\u6211\u4eec\u68a6\u5bd0\u4ee5\u6c42\u7684\u54c8\u5e0c\u7ed3\u679c\u7a81\u7136\u51fa\u73b0\u5728\u63a7\u5236\u53f0\u4e0a\uff0c\u8fd9\u5c06\u662f\u591a\u4e48\u7f8e\u5999\u7684\u573a\u666f\u3002\u90a3\u65f6\uff0c\u6211\u4eec\u80af\u5b9a\u4f1a\u56de\u5934\u6d4f\u89c8\u8fd9\u7bc7\u6587\u7ae0\uff0c\u7531\u8877\u5730\u611f\u53f9\u8fd9\u79cd\u653b\u51fb\u7684\u5de7\u5999\u4e4b\u5904\uff0c\u5e76\u611f\u8c22\u8fd9\u4e9b\u5de5\u5177\u80cc\u540e\u5f00\u53d1\u8005\u7684\u5929\u624d\u601d\u60f3\u3002<\/p>\n<p>\u4e3a\u4ec0\u4e48\u8981\u7ed9\u5b83\u53d6\u8fd9\u4e2a\u540d\u5b57\u5462\uff1f\u8fd9\u662f\u56e0\u4e3a\u6211\u4eec\u5728\u653b\u51fb\u8fc7\u7a0b\u4e2d\u4f7f\u7528\u4e86PRINCEprocessor Hashcat\u5de5\u5177\uff0c\u5e76\u7ed3\u5408\u4e86Prince\u7684\u8457\u540d\u6b4c\u66f2\u300aPurple rain\u300b\uff0c\u6700\u7ec8\u786e\u5b9a\u4e86\u8fd9\u4e2a\u540d\u5b57\u3002\u5728\u672c\u6587\u4e2d\uff0c\u6211\u4eec\u5047\u8bbe\u60a8\u6b63\u5728\u5c1d\u8bd5\u7834\u89e3\u7c7b\u4f3cNTLM\u7684\u54c8\u5e0c\uff0c\u5e76\u4e14\u5df2\u7ecf\u679a\u4e3e\u5b8c7\u4e2a\u5b57\u7b26\u4ee5\u5185\u7684\u6240\u6709\u5bc6\u7801\uff08\u4e5f\u5c31\u662f\u8bf4\uff0c\u672c\u6587\u4e2dPRINCE\u53ea\u9700\u8981\u751f\u6210\u957f\u5ea6\u8d85\u8fc78\u4e2a\u5b57\u7b26\u7684\u5019\u9009\u5bc6\u7801\uff1a&#8211;pw-min=8\uff09\u3002\u6700\u540e\uff0c\u60a8\u8fd8\u9700\u8981\u4e00\u4e2a\u7834\u89e3\u5e73\u53f0\uff0c\u53ef\u4ee5\u9009\u62e9\u4f7f\u7528Budget Cracking Rig\u6216Portable Cracking Rig\u3002\u8bf7\u5173\u6ce8\u6211\u4eec\u7684Twitter\u83b7\u53d6\u6700\u65b0\u6d88\u606f\u3002<\/p>\n<pre><code>shuf dict.txt | pp64.bin --pw-min=8 | hashcat -a 0 -m #type -w 4 -O hashes.txt -g 300000\n<\/code><\/pre>\n<p>\u4e8c\u3001\u53c2\u8003\u8d44\u6e90<br \/>\n\u5728\u5f00\u59cb\u4e4b\u524d\uff0c\u60a8\u53ef\u4ee5\u53c2\u8003\u4ee5\u4e0b\u51e0\u4e2a\u94fe\u63a5\uff1a<\/p>\n<ul>\n<li>Hashcat<\/li>\n<li>PRINCEprocessor Hashcat Utility<\/li>\n<li>List of Possible Dictionaries<\/li>\n<\/ul>\n<p>Purple Rain\u7684\u5178\u578b\u7528\u6cd5\u5982\u4e0b\uff1a<\/p>\n<pre><code>pp64.bin --pw-min=8 &lt; dict.txt | head -20\nshuf dict.txt | pp64.bin --pw-min=8 | head -20\n<\/code><\/pre>\n<p>\u4e09\u3001\u968f\u673a\u751f\u6210<br \/>\n\u5173\u4e8ePRINCE\uff08PRobability INfinite Chained Elements\uff09\u653b\u51fb\u6280\u672f\u4ee5\u53ca\u968f\u673a\u89c4\u5219\u751f\u6210\u65b9\u9762\u7684\u5185\u5bb9\uff0c\u60a8\u53ef\u4ee5\u5728\u7f51\u4e0a\u627e\u5230\u4e24\u7bc7\u975e\u5e38\u597d\u7684\u6587\u7ae0\uff0c\u8fd9\u4e5f\u662fPurple Rain\u7684\u7075\u611f\u6765\u6e90\u3002\u6211\u5f3a\u70c8\u63a8\u8350\u60a8\u9605\u8bfbMatt Weir\u53d1\u8868\u7684\u6709\u5173PRINCE\u5de5\u4f5c\u539f\u7406\u53ca\u5177\u4f53\u529f\u80fd\u7684\u6587\u7ae0\u3002\u540c\u65f6\uff0c\u6211\u4e5f\u63a8\u8350\u60a8\u9605\u8bfb@evilmog\u5199\u7684\u6709\u5173&#8221;raking&#8221;\uff08\u968f\u673a\u5bc6\u7801\u5019\u9009\u8bcd\u751f\u6210\uff09\u6280\u672f\u7684\u76f8\u5173\u6587\u7ae0\uff0c\u7136\u540e\u642d\u5efa\u81ea\u5df1\u7684\u73af\u5883\uff0c\u5728hashcat\u4e2d\u4f7f\u7528\u968f\u673a\u751f\u6210\u7684\u89c4\u5219\u6765\u7834\u89e3\u54c8\u5e0c\u3002\u7b80\u800c\u8a00\u4e4b\uff0cPRINCE\u53ef\u4ee5\u6839\u636e\u8f93\u5165\u7684\u5b57\u5178\u96c6\uff0c\u968f\u673a\u7ec4\u5408\u751f\u6210\u8f93\u5165\u8bcd\u94fe\u3002\u914d\u5408hashcat\u7684-g\u53c2\u6570\uff08\u968f\u673a\u89c4\u5219\u751f\u6210\u9009\u9879\uff09\uff0c\u60a8\u53ef\u4ee5\u8fdb\u4e00\u6b65\u589e\u5f3aPRINCE\u5019\u9009\u5bc6\u7801\u7684\u8f93\u51fa\u7ed3\u679c\u3002<\/p>\n<p>\u56db\u3001\u5b57\u5178\u9009\u62e9<br \/>\n\u60a8\u53ef\u4ee5\u4e3aPurple Rain\u63d0\u4f9b\u4e24\u79cd\u7c7b\u578b\u7684\u5b57\u5178\uff1a\u4e13\u7528\u5b57\u5178\uff08Targeted wordlist\uff09\u6216\u901a\u7528\u5b57\u5178\uff08General Purpose wordlist\uff09\u3002\u5982\u679c\u60a8\u6ca1\u6709\u4efb\u4f55\u5b57\u5178\uff0c\u53ef\u4ee5\u4f7f\u7528\u4e00\u4e9b\u4f18\u79c0\u7684\u901a\u7528\u5b57\u5178\uff0c\u5982rockyou.txt\u5b57\u5178\u3002\u5bf9\u4e8ePRINCE\u800c\u8a00\uff0c\u6211\u4e0d\u5efa\u8bae\u4f7f\u7528\u975e\u5e38\u5927\u7684\u5b57\u5178\uff08\u6bd4\u5982\u5927\u5c0f\u8d85\u8fc7500MB\u7684\u5b57\u5178\uff09\u3002\u60a8\u53ef\u4ee5\u76f4\u63a5\u4f7f\u7528\u6700\u5e38\u7528\u76841000\u4e07\u4e2a\u5bc6\u7801\u96c6\uff08\u53ea\u67093.8MB\uff09\uff0c\u6216\u8005\u6839\u636e\u5b9e\u9645\u9700\u8981\u9009\u62e9\u5408\u9002\u7684\u8bcd\u5178\u3002\u5728\u5c06\u5b57\u5178\u8f93\u5165PRINCEprocessor\u4e4b\u524d\uff0c\u60a8\u53ef\u4ee5\u4f7f\u7528shuf\u547d\u4ee4\u5bf9\u5176\u8fdb\u884c\u6d17\u724c\uff0c\u4ee5\u786e\u4fdd\u6bcf\u6b21\u53d1\u8d77Purple Rain\u653b\u51fb\u65f6\uff0cPRINCEprocessor\u4f1a\u521b\u5efa\u4e0d\u540c\u7684\u8bcd\u94fe\u3002\u60a8\u53ef\u4ee5\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\u591a\u6b21\u5c1d\u8bd5\uff0c\u6bd4\u8f83\u8f93\u51fa\u7ed3\u679c\u7684\u5dee\u5f02\uff1a<\/p>\n<pre><code>shuf dict.txt | pp64.bin --pw-min=8 | hashcat -a 0 -m #type -w 4 -O hashes.txt -g 300000\n<\/code><\/pre>\n<p>\u4e94\u3001\u89c4\u5219\u6570<br \/>\n\u5728\u9009\u62e9\u89c4\u5219\u65f6\uff0c\u6211\u5efa\u8bae\u5148\u4eceHashcat\u81ea\u5e26\u7684dive.rule\u5f00\u59cb\u3002\u8fd9\u4e2a\u89c4\u5219\u53ef\u4ee5\u5c06\u5df2\u77e5\u5bc6\u7801\u7684\u884d\u751f\u5bc6\u7801\u4e0ePRINCEprocessor\u968f\u673a\u751f\u6210\u7684\u5019\u9009\u5bc6\u7801\u7ec4\u5408\u5728\u4e00\u8d77\uff0c\u5e76\u4e14\u7531\u4e8edive.rule\u4f1a\u6309\u6982\u7387\u5927\u5c0f\u8fdb\u884c\u6392\u5e8f\uff0c\u56e0\u6b64\u60a8\u53ef\u80fd\u4f1a\u66f4\u65e9\u5730\u83b7\u5f97\u7ed3\u679c\u3002\u5982\u679c\u60a8\u60f3\u66f4\u590d\u6742\u4e00\u4e9b\uff0c\u53ef\u4ee5\u4f7f\u7528Hashcat\u7684\u968f\u673a\u89c4\u5219\u751f\u6210\u529f\u80fd\uff0c\u6700\u5c11\u4f7f\u752850,000\u6761\u968f\u673a\u89c4\u5219\uff0c\u6839\u636e\u60c5\u51b5\u53ef\u4ee5\u6269\u5145\u52301,000,000\u6761\u89c4\u5219\u3002\u5982\u679c\u60a8\u4e0d\u60f3\u4f7f\u7528\u592a\u591a\u89c4\u5219\uff0c\u6211\u5efa\u8bae\u6bcf\u6b21\u8fd0\u884c\u65f6\u4f7f\u7528300,000\u6761\u89c4\u5219\uff08\u5728\u547d\u4ee4\u884c\u4e2d\u52a0\u5165-g 300000\u53c2\u6570\uff09\u3002\u9700\u8981\u6ce8\u610f\u7684\u662f\uff0c\u751f\u6210\u7684\u968f\u673a\u89c4\u5219\u96c6\u8d8a\u5927\uff0cHashcat\u542f\u52a8\u7684\u65f6\u95f4\u4e5f\u4f1a\u8d8a\u957f\uff0c\u56e0\u4e3aHashcat\u6bcf\u6b21\u8fd0\u884c\u65f6\u90fd\u9700\u8981\u52a8\u6001\u751f\u6210\u8fd9\u4e9b\u89c4\u5219\u3002\u6b64\u5916\uff0cPRINCEprocessor\u81ea\u5e26\u7684prince<em>generated\u548cprince<\/em>optimized\u89c4\u5219\u96c6\u4e5f\u53ef\u4ee5\u5c1d\u8bd5\u4f7f\u7528\u3002<\/p>\n<p>\u516d\u3001\u547d\u4ee4\u89e3\u6790<br \/>\n\u73b0\u5728\u8ba9\u6211\u4eec\u6765\u770b\u4e00\u4e0bPurple Rain\u653b\u51fb\u4e2d\u4f7f\u7528\u7684\u4e00\u4e9b\u547d\u4ee4\u3002<\/p>\n<p>\u57fa\u672c\u7528\u6cd5\uff1a<\/p>\n<pre><code>ls dict\/ | sort -R | shuf 'dict\/' `tail -1` | pp64.bin --pw-min=8 | hashcat -a 0 -m #type -w 4 -O hashes.txt -g 300000\n<\/code><\/pre>\n<p>\u5177\u4f53\u5b57\u6bb5\u7684\u542b\u4e49\u5982\u4e0b\uff1a<\/p>\n<ul>\n<li>shuf\uff1a\u5728\u5c06\u5b57\u5178\u8f93\u5165PRINCEprocessor\u4e4b\u524d\uff0c\u5148\u5bf9\u5176\u8fdb\u884c\u968f\u673a\u5904\u7406\u3002<\/li>\n<li>dict.txt\uff1a\u4e13\u7528\u578b\u6216\u901a\u7528\u578b\u5b57\u5178\uff0c\u6839\u636e\u5b9e\u9645\u60c5\u51b5\u9009\u62e9\u3002<\/li>\n<li>pp64.bin\uff1aHashcat\u63d0\u4f9b\u7684PRINCEprocessor\u5de5\u5177\u3002<\/li>\n<li>&#8211;pw-min=8\uff1a\u8981\u6c42PRINCE\u751f\u6210\u957f\u5ea6\u81f3\u5c11\u4e3a8\u4e2a\u5b57\u7b26\u7684\u5bc6\u7801\u3002<\/li>\n<li>hashcat -a 0\uff1a\u4ee5Straight\u6a21\u5f0f\u542f\u52a8Hashcat\uff0c\u83b7\u53d6stdin\u7684\u8f93\u5165\u6570\u636e\u3002<\/li>\n<li>-m #type\uff1a\u6307\u5b9a\u54c8\u5e0c\u6a21\u5f0f\u7684\u7f16\u53f7\uff0c\u6bd4\u5982-m 1000\u5bf9\u5e94\u7684\u662fNTLM\u3002<\/li>\n<li>-w 4\uff1a\u6307\u5b9aHashcat\u91c7\u7528\u6700\u9ad8\u7684\u5de5\u4f5c\u8d1f\u8f7d\u6765\u8fd0\u884c\u3002<\/li>\n<li>hashes.txt\uff1a\u5305\u542b\u5f85\u7834\u89e3\u54c8\u5e0c\u7684\u8f93\u5165\u6587\u4ef6\u3002<\/li>\n<li>-g 300000\uff1a\u6307\u5b9aHashcat\u751f\u6210300,000\u6761\u968f\u673a\u89c4\u5219\u3002<\/li>\n<\/ul>\n<p>\u4e24\u70b9\u5efa\u8bae\uff1a<\/p>\n<ol>\n<li>\u518d\u6b21\u6267\u884c\u76f8\u540c\u4efb\u52a1\u4e4b\u524d\uff0c\u5efa\u8bae\u5c06\u8fd0\u884c\u65f6\u95f4\u9650\u5236\u57281\u5c0f\u65f6\u523024\u5c0f\u65f6\u4e4b\u95f4\u3002<\/li>\n<li>\u53ef\u4ee5\u6536\u96c6\u6709\u6548\u7684\u968f\u673a\u89c4\u5219\uff0c\u53c2\u6570\u4e3a&#8211;debug-mode=1 &#8211;debug-file=success_purplerain.rules\u3002<\/li>\n<\/ol>\n<p>\u9ad8\u7ea7\u7528\u6cd5\uff1a<br \/>\n\u5982\u679c\u60a8\u60f3\u968f\u673a\u4f7f\u7528dict\/\u76ee\u5f55\u4e0b\u7684\u5b57\u5178\uff0c\u53ef\u4ee5\u4f7f\u7528\u4ee5\u4e0b\u547d\u4ee4\uff1a<\/p>\n<pre><code>cat dict1.txt dict2.txt | shuf | pp64.bin --pw-min=8 | hashcat -a 0 -m #type -w 4 -O hashes.txt -g 300000\n<\/code><\/pre>\n<p>\u60a8\u53ef\u4ee5\u5c06\u4e0a\u9762\u7684tail -1\u547d\u4ee4\u66ff\u6362\u4e3a\u60a8\u9700\u8981\u7684\u547d\u4ee4\u3002<\/p>\n<p>\u60a8\u8fd8\u53ef\u4ee5\u968f\u673a\u7ec4\u5408\u4f7f\u7528\u591a\u4e2a\u5b57\u5178\uff0c\u4ee5\u589e\u52a0\u8f93\u5165\u6570\u636e\u7684\u591a\u6837\u6027\uff0c\u547d\u4ee4\u5982\u4e0b\uff1a<\/p>\n<p>\u9ad8\u7ea7\u9009\u9879\uff1a<br \/>\n\u5728PRINCEprocessor\u4e2d\uff0c\u6211\u4eec\u53ef\u4ee5\u4f7f\u7528&#8211;elem-cnt-min\u548c&#8211;elem-cnt-max\u9009\u9879\uff0c\u589e\u52a0\u8f93\u5165\u5b57\u5178\u7684\u5355\u8bcd\/\u5143\u7d20\u7684\u94fe\u63a5\u6570\u3002<br \/>\n\u5728Hashcat\u7684\u968f\u673a\u89c4\u5219\u751f\u6210\u4e2d\uff0c\u6211\u4eec\u53ef\u4ee5\u4f7f\u7528&#8211;generate-rules-func-min\u548c&#8211;generate-rules-func-max\u9009\u9879\uff0c\u589e\u52a0\u6216\u51cf\u5c11\u6bcf\u4e2a\u89c4\u5219\u7684\u51fd\u6570\u6570\u91cf\u3002<\/p>\n<p>\u4e03\u3001\u5178\u578b\u5e94\u7528<br \/>\n\u8ba9\u6211\u4eec\u4e3e\u4e2a\u7b80\u5355\u7684\u4f8b\u5b50\uff0c\u4ecb\u7ecd\u5982\u4f55\u914d\u7f6ePurple Rain\u653b\u51fb\u53ca\u8fd0\u884c\u73af\u5883\u3002<\/p>\n<ol>\n<li>\u4ecerockyou\u5b57\u5178\u4e2d\u968f\u673a\u63d0\u53d630,000\u4e2a\u5bc6\u7801\uff1a<\/li>\n<\/ol>\n<pre><code>while read line; do echo -n $line | md5sum; done  hashes.txt\n<\/code><\/pre>\n<ol start=\"2\">\n<li>\n<p>\u4f7f\u7528md5\u7b97\u6cd5\u5904\u7406test_rockyou.txt\uff0c\u5c06\u751f\u6210\u7684\u54c8\u5e0c\u503c\u5b58\u5165\u6587\u4ef6\u4e2d\uff08\u9700\u8981\u4e00\u5b9a\u65f6\u95f4\u624d\u80fd\u5b8c\u6210\uff09\uff1a<\/p>\n<\/li>\n<li>\n<p>\u521b\u5efa\u4e00\u4e2a\u5c0f\u578b\u5b57\u5178\uff0c\u4ee5\u4fbf\u6d4b\u8bd5\u521a\u624d\u751f\u6210\u7684\u54c8\u5e0c\u503c\uff1a<\/p>\n<\/li>\n<li>\n<p>\u6211\u4eec\u4e5f\u53ef\u4ee5\u83b7\u53d6Google\u4e0a\u524d20,000\u4e2a\u82f1\u6587\u5355\u8bcd\uff0c\u52a0\u5165\u524d\u9762\u90a3\u4e2a\u5b57\u5178\u4e2d\uff1a<\/p>\n<\/li>\n<\/ol>\n<pre><code>shuf test_dict.txt | pp64.bin | hashcat -a 0 -m 0 -w 4 -O hashes.txt -r dive.rule\n<\/code><\/pre>\n<ol start=\"5\">\n<li>\u5148\u4f7f\u7528dive.rule\u89c4\u5219\uff0c\u82b11\u4e2a\u5c0f\u65f6\u6267\u884cPurple Rain\u653b\u51fb\uff1a<\/li>\n<\/ol>\n<p>\u8fd0\u884c\u8fc7\u7a0b\u4e2d\uff0c\u60a8\u53ef\u4ee5\u89c2\u5bdf\u5230Hashcat\u4e2d\u4e0d\u65ad\u51fa\u73b0\u7684\u5404\u79cd\u5019\u9009\u5bc6\u7801\u3002<\/p>\n<ol start=\"6\">\n<li>\u63a5\u4e0b\u6765\uff0c\u4f7f\u7528\u968f\u673a\u751f\u6210\u7684200,000\u6761\u89c4\u5219\uff0c\u82b18\u4e2a\u5c0f\u65f6\u6267\u884cPurple Rain\u653b\u51fb\uff1a<\/li>\n<\/ol>\n<p><img decoding=\"async\" src=\"http:\/\/www.ccwifi.cc\/blogs\/wp-content\/uploads\/2024\/03\/1710786059692_2.jpg\" alt=\"hashcat\u4f7f\u7528\u65b9\u6cd5\"><\/p>\n<p>\u901a\u8fc78\u5c0f\u65f6\u7684\u8fd0\u884c\u65f6\u95f4\uff0c\u60a8\u53ef\u4ee5\u4e86\u89e3\u5230\u8fd9\u79cd\u65b9\u6cd5\u4e0d\u9700\u8981\u8fc7\u591a\u4eba\u5de5\u53c2\u4e0e\uff0c\u53ef\u4ee5\u6301\u7eed\u3001\u81ea\u4e3b\u5b8c\u6210\u653b\u51fb\u8fc7\u7a0b\u3002\u60a8\u4f1a\u770b\u5230\u4e00\u4e9b\u60a8\u6839\u672c\u65e0\u6cd5\u60f3\u5230\u7684\u5bc6\u7801\u7ec4\u5408\u3002\u8bf7\u8bb0\u4f4f\u4e00\u70b9\uff1a\u4e0d\u786e\u5b9a\u7684\u8f93\u51fa\u7ed3\u679c\u662f\u60a8\u6700\u597d\u7684\u670b\u53cb\u3002<\/p>\n<p>\u5728\u7834\u89e3\u8fc7\u7a0b\u4e2d\uff0c\u5dee\u4e4b\u6beb\u5398\u5219\u5931\u4e4b\u5343\u91cc\uff0c\u6211\u4eec\u4e0d\u80fd\u653e\u5f03\u4e1d\u6beb\u7684\u53ef\u80fd\u6027\u3002<\/p>\n<p>\u516b\u3001\u603b\u7ed3<br \/>\n\u5e0c\u671bPurple Rain\u653b\u51fb\u65b9\u6cd5\u5bf9\u60a8\u6709\u6240\u5e2e\u52a9\uff0c\u5e76\u80fd\u52a0\u5165\u60a8\u7684\u77e5\u8bc6\u50a8\u5907\u7b14\u8bb0\u672c\u3002\u5bf9\u4e8e\u521a\u63a5\u89e6\u5bc6\u7801\u7834\u89e3\u7684\u65b0\u624b\u6765\u8bf4\uff0c\u8fd9\u79cd\u653b\u51fb\u65b9\u6cd5\u975e\u5e38\u7b80\u5355\u65b9\u4fbf\uff0c\u65e0\u9700\u4eba\u5de5\u53c2\u4e0e\uff0c\u53ef\u4ee5\u53d6\u5f97\u8f83\u597d\u7684\u6548\u679c\u3002\u5982\u679c\u6709\u65f6\u95f4\uff0c\u60a8\u53ef\u4ee5\u9605\u8bfb\u4e00\u4e0b\u300aHash Crack v2.0: Password Cracking Manual\u300b\u8fd9\u672c\u624b\u518c\uff0c\u5176\u4e2d\u5305\u542b\u8bb8\u591a\u7c7b\u4f3c\u7684\u653b\u51fb\u65b9\u6cd5\u548c\u5176\u4ed6\u6709\u7528\u7684\u53c2\u8003\u8d44\u6599\u3002\u8bf7\u8bb0\u4f4f\u4e00\u70b9\uff1a\u5728\u7834\u89e3\u8fc7\u7a0b\u4e2d\uff0c\u968f\u673a\u6027\u53ef\u4ee5\u62d3\u5bbd\u60a8\u7684\u89c6\u91ce\uff0c\u5e26\u6765\u65b0\u7684\u53ef\u80fd\u6027\u548c\u65e0\u6cd5\u9884\u6d4b\u7684\u7ed3\u679c\u3002\u53e6\u5916\uff0c\u8bf7\u5173\u6ce8\u5373\u5c06\u53d1\u5e03\u7684\u65b0\u578b\u7834\u89e3\u5e73\u53f0\uff1aPortable Cracking Rig\uff08\u5982\u4e0b\u56fe\u6240\u793a\uff09\uff0c\u53ea\u97001,000\u7f8e\u5143\u5373\u53ef\u4eab\u53d7\u5176\u5f3a\u5927\u529f\u80fd\u3002\u8fd9\u4e2a\u4ef7\u683c\u975e\u5e38\u5b9e\u60e0\uff0c\u6bd5\u7adf\u642d\u5efa\u4e00\u4e2a\u4ef7\u503c15,000\u7f8e\u5143\u3001\u4f7f\u75288\u4e2aGPU\u7684\u7834\u89e3\u9635\u5217\u5e76\u975e\u6613\u4e8b\u3002\u8bf7\u5173\u6ce8\u6211\u4eec\u7684Twitter @netmux\uff0c\u83b7\u53d6\u540e\u7eed\u66f4\u65b0\u548c\u76f8\u5173\u6587\u7ae0\u3002<\/p>\n<p><!-- \u6587\u7ae0\u6765\u6e90:https:\/\/www.anquanke.com\/post\/id\/95138 --><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Purple Rain\uff1a\u4e00\u79cd\u65b0\u578b\u54c8\u5e0c\u7834\u89e3\u65b9\u6cd5\u4e00\u3001\u524d\u8a00\u5728\u6e17\u900f\u6d4b\u8bd5\u65f6\uff0c\u4f60\u662f\u5426\u9762\u4e34\u7740\u8fd9\u6837\u7684\u7a98\u5883\uff1a\u5f53\u4f60\u7a77\u5c3d\u4e86\u6240\u6709\u7684\u5bc6\u7801\u7834\u89e3\u653b\u51fb\u6280\u672f\u5374\u4ecd\u7136\u4e00\u65e0\u6240\u6210\uff0c\u5373\u4f7f\u7ffb\u904d\u5404\u79cd\u7b14\u8bb0\u3001\u5206\u6790\u5bc6\u7801\u7b56\u7565\u53ca\u5f53\u524d\u7684\u7834\u89e3\u7ed3\u679c\u3001\u4e00\u9875\u9875\u7ffb\u9605\u54c8\u5e0c\u7834\u89e3\u624b\u518c\uff0c\u4ecd\u7136\u4e8e\u4e8b\u65e0\u8865\u3002<\/p>\n","protected":false},"author":1,"featured_media":2458,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"topic":[],"class_list":["post-2457","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-1"],"_links":{"self":[{"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/posts\/2457","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/comments?post=2457"}],"version-history":[{"count":0,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/posts\/2457\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/media\/2458"}],"wp:attachment":[{"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/media?parent=2457"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/categories?post=2457"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/tags?post=2457"},{"taxonomy":"topic","embeddable":true,"href":"https:\/\/www.ccwifi.cc\/blogs\/wp-json\/wp\/v2\/topic?post=2457"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}