File APIs for Java Developers
Manipulate DOC, XLS, PPT, PDF and many others from your application.
http://aspose.com/file-tools
The moose likes Servlets and the fly likes young HACKER's training:  pass gen :))) Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login


Win a copy of Murach's Java Servlets and JSP this week in the Servlets forum!
JavaRanch » Java Forums » Java » Servlets
Bookmark "young HACKER Watch "young HACKER New topic
Author

young HACKER's training: pass gen :)))

Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
Hi!!!
Please don't laugh at me... I am only 16 years old and I was sitting and thinking about which porn web site should I watch when an accident happened and THE THOUGHT was born inside my head... here's a result:


In a nutshell, this is a program that reads words from a dictionary and plugs them into parameters of the given URL...
Now The question is... how would you check for the result of that "hacking"? I mean whether you succeeded with your pass or not? Since its my own web, I simply print out either "true" or "false" and check that.... But in a real life situation, what would YOU do?
I'd guess try some random pass, capture the output of failed login, and then compare it in the program?
Thankx in advance,
Ivan
Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
Here's the proof :
index.jsp:

Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
One more question... the dictionary I am using is in the following format:

I understand most of the ,' args:
\ = cut off the last char of the original word
" = double the last char of the original word
nothing = just append it
but I don't know what does ' mean.... anybody thinks differently enough?
narasimharao konjeti
Ranch Hand

Joined: Apr 26, 2003
Posts: 130
is there any special trying for that, i need details.
c..u...
regards


"Unwise to sweat petty stuff, wise to pet sweaty stuff."
Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
trying for what???
Btw, here's an updated version which works with the dictionary (except 's) + lowercases them:
Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
An example of output:


I cut out a lot of it... it was run on the following dictionary:

So.. anybody has any suggestions regarding my question in the first post (and the one about 's) ??
Ivan Jouikov
Ranch Hand

Joined: Jul 22, 2003
Posts: 269
Btw, the web where I got the dictionary is:
http://pdp-10.trailing-edge.com/bb-l014w-bm_tops20_v7_0_atpch_23/01/autopatch/password.dictionary
If you don't want to wast time printing to the console, do the following to your main:

+ do some uncommenting... and here's my result with the REAL dictionary:
Attempts: 1000
Attempts: 2000
Attempts: 3000
Attempts: 4000
Attempts: 5000
Attempts: 6000
Attempts: 7000
Attempts: 8000
Attempts: 9000
Attempts: 10000
Attempts: 11000
Attempts: 12000
Attempts: 13000
Attempts: 14000
Attempts: 15000
Attempts: 16000
Attempts: 17000
Attempts: 18000
Attempts: 19000
Attempts: 20000
Attempts: 21000
Attempts: 22000
Attempts: 23000
Attempts: 24000
Attempts: 25000
Attempts: 26000
Attempts: 27000
Attempts: 28000
Attempts: 29000
SUCCESS! PASSWORD HAS BEEN FOUND: "cool"
Total attempts: 29644
Seconds taken: 1347

(the seconds are inaccuarte - divide by extra 10 )
Well, I am off to bed
Ron Newman
Ranch Hand

Joined: Jun 06, 2002
Posts: 1056
I don't see any Servlet here -- is this thread in the wrong folder?


Ron Newman - SCJP 1.2 (100%, 7 August 2002)
Cindy Glass
"The Hood"
Sheriff

Joined: Sep 29, 2000
Posts: 8521
First of all JavaRanch does not approve or support any Hacker activity. :roll:
Second, this is not a servlet so I am moving this topic to Java In General - Intermediate.


"JavaRanch, where the deer and the Certified play" - David O'Meara
 
I agree. Here's the link: http://aspose.com/file-tools
 
subject: young HACKER's training: pass gen :)))
 
Similar Threads
endless loop with nothing happening
client hangs after getting data from server
# of lines in a file?
please help me in how to create a java application to give url and get the requested page
young HACKER's training: pass gen :)))