Previous Thread
Next Thread
Print Thread
Page 2 of 2 1 2
Joined: Aug 2003
Posts: 201
D
CEG\'er
OP Offline
CEG\'er
D
Joined: Aug 2003
Posts: 201
The site is one of those livejournal sites. I don't know what language that would be in. I don't think the security is very high for them.

Joined: Dec 2001
Posts: 777
C
Veteran CEG\'er
Offline
Veteran CEG\'er
C
Joined: Dec 2001
Posts: 777
Originally posted by dredwingz03:
I know this is a car forum, but are there any people that know a good brute-force password cracker or a way to crack a password on a webpage log-in? Psycho ex-girlfriend must have watched me log-in back in the day, and took over and changed the password recently.

PMs or IMs to dredwingz03 would work if you don't want to post here. Thanks.




Brute force-ing a web site password is NOT feasible. Depending on the type of site and the content involved, login attempts (pass or fail) are logged. Some only give you a number of attempts before denying complete access to your IP/browser, thus making brute force attempts VERY hard. Even if you aren't denied access, there would be one LONG audit trail of attempts to gain access to one particular account which would raise several flags.

Your best bet is social engineering. Email the webmaster or support and finagle your way through to get the password reset. (Tell them you lost the email account where the password recovery message gets sent to.) Bim, Bam, Boom...

OR.. just cancel the account and create a new one. Then call support and have them move the content.

There are MANY other options than simply brute force. That's why brute force is a last resort for cryptanalysts.

--JamesT


>--------------< --Chemguru 99 CSVT Frost /Mid. Blue 00 Suzuki SV650 Red, Naked
Joined: Jan 2001
Posts: 1,889
R
Hard-core CEG\'er
Offline
Hard-core CEG\'er
R
Joined: Jan 2001
Posts: 1,889
You might need to share a little more info. Is this your website?(I assume so) Hosted by a hosting service?(again I assume so) It may be your site but you would have to crack their security which is a federal offense I believe since it's hosted on their servers. You might have to contact the hosting service and explain your problem.


99 Contour Sport SE MTX KKM filter, B&M shifter No res, BAT kit Green car silver hood (because silver is faster)
Joined: Apr 2002
Posts: 6,198
D
Hard-core CEG'er
Offline
Hard-core CEG'er
D
Joined: Apr 2002
Posts: 6,198
Originally posted by DopePope:
spoofing what?



There are some websites (pr0n, mostly...okay, entirely) that supply a list of 'URL' and a 'REF' (referral) addresses. There is software that you can run that, when you enter those two addresses, will 'spoof' the site into thinking you're a member. It doesn't get you into the members section per se, but it does get you to some of the members' galleries. So in other words you're tricking the security on the site into thinking you're a member in order to allow you to view certain galleries (usually one gallery per URL/REF combination.

...or so a buddy told me.

I wouldn't recommend spoofing, because site admins really don't like it and they usually do all they can to get you disconnected from your ISP and/or 'fined' by your ISP. This hasn't happened to me (because I don't spoof), but I have heard of it happening.

Page 2 of 2 1 2

Link Copied to Clipboard
Powered by UBB.threads™ PHP Forum Software 7.7.5