<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-248147735868857337.post6430698429448134429..comments</id><updated>2011-12-22T21:59:55.458-08:00</updated><category term='install'/><category term='ccmp'/><category term='documentation'/><category term='news'/><category term='av'/><category term='vulnerability'/><category term='hash'/><category term='str0ke'/><category term='packing'/><category term='wpa2'/><category term='australian'/><category term='incident'/><category term='encryption'/><category term='backtrack'/><category term='cracking'/><category term='iphone'/><category term='exploitation'/><category term='dep'/><category term='kismet'/><category term='alternative'/><category term='radius'/><category term='peap'/><category term='msfpayload'/><category term='obfuscate'/><category term='aes'/><category term='macintosh'/><category term='java'/><category term='authentication'/><category term='wifi'/><category term='information gathering'/><category term='security'/><category term='msfencode'/><category term='wordlist'/><category term='metasploit'/><category term='wpa'/><category term='australia'/><category term='forensics'/><category term='incidentresponse'/><category term='tkip'/><category term='report'/><category term='mac'/><category term='worm'/><category term='penetrationtesting'/><category term='framework'/><category term='pentest'/><category term='exploit'/><category term='passthehash'/><category term='milworm'/><category term='obfuscation'/><category term='incient response'/><category term='eap'/><category term='pass-the-hash'/><category term='rsa'/><category term='hacking'/><category term='crack'/><category term='respitory'/><category term='risk'/><category term='sourcecode'/><category term='template'/><category term='osx'/><category term='scramble'/><category term='archive'/><category term='response'/><category term='leopard'/><category term='windows'/><category term='autopwn'/><category term='code'/><category term='bypass'/><category term='avoidance'/><category term='aslr'/><category term='repository'/><category term='commandline'/><category term='milw0rm'/><category term='research'/><category term='upx'/><category term='internet explorer'/><category term='howto'/><category term='tutorial'/><category term='ikee'/><category term='enumeration'/><category term='emet'/><category term='nessus'/><category term='blog'/><category term='backtrack4'/><category term='ie'/><category term='source'/><category term='antivirus'/><category term='ntlm'/><category term='802.11'/><category term='wireless'/><category term='dictionary'/><category term='history'/><category term='virus'/><category term='microsoft'/><category term='samba'/><category term='john'/><category term='lm'/><category term='password'/><category term='scambling'/><title type='text'>Comments on Defence in Depth: Cracking Mac OS X Passwords</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.defenceindepth.net/feeds/6430698429448134429/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html'/><author><name>Patrick Dunstan</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>23</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-362032739055224865</id><published>2011-12-22T21:59:55.458-08:00</published><updated>2011-12-22T21:59:55.458-08:00</updated><title type='text'>what does the c/s mean?
Does it mean cracks per se...</title><content type='html'>what does the c/s mean?&lt;br /&gt;Does it mean cracks per second?&lt;br /&gt;If it does mean that mine says: ‘guesses: 0 time: 1:21:22:54 (3) c/s: 1968K trying: 1euy35h7′&lt;br /&gt;Is 1968K too slow?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/362032739055224865'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/362032739055224865'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1324619995458#c362032739055224865' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1744150792'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-8386726329276388194</id><published>2011-08-16T00:51:35.220-07:00</published><updated>2011-08-16T00:51:35.220-07:00</updated><title type='text'>Hi Patrick, would be nice to have this article upd...</title><content type='html'>Hi Patrick, would be nice to have this article updated for 10.7 Lion because it doesn&amp;#39;t work there …</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/8386726329276388194'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/8386726329276388194'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1313481095220#c8386726329276388194' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1716659196'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-5556617302445546412</id><published>2011-07-15T17:26:57.778-07:00</published><updated>2011-07-15T17:26:57.778-07:00</updated><title type='text'>Oh yea, make myself look super foolish.
I get to t...</title><content type='html'>Oh yea, make myself look super foolish.&lt;br /&gt;I get to the point where I run:&lt;br /&gt;./john hash.txt&lt;br /&gt;&lt;br /&gt;(not the command dscl localhost -read /Search/Users/ | grep GeneratedUID | cut -c15- as listed above)&lt;br /&gt;&lt;br /&gt;and that is when I get the erro that I posted.&lt;br /&gt;&lt;br /&gt;Duhhhh - blonde moment I guess.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/5556617302445546412'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/5556617302445546412'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1310776017778#c5556617302445546412' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1916058703'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-3840955693498058405</id><published>2011-07-15T17:11:57.462-07:00</published><updated>2011-07-15T17:11:57.462-07:00</updated><title type='text'>that last post should show:

dyld: lazy symbol bin...</title><content type='html'>that last post should show:&lt;br /&gt;&lt;br /&gt;dyld: lazy symbol binding failed: Symbol not found: ___bzero&lt;br /&gt;  Referenced from: /Users/M/Downloads/john/run/./john&lt;br /&gt;  Expected in: /usr/lib/libSystem.B.dylib</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3840955693498058405'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3840955693498058405'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1310775117462#c3840955693498058405' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1916058703'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-9003106465823043659</id><published>2011-07-15T17:10:49.887-07:00</published><updated>2011-07-15T17:10:49.887-07:00</updated><title type='text'>All instructions work up to the point of:
dscl loc...</title><content type='html'>All instructions work up to the point of:&lt;br /&gt;dscl localhost -read /Search/Users/ | grep GeneratedUID | cut -c15-&lt;br /&gt;At which poiint I get:&lt;br /&gt;&lt;br /&gt;yld: lazy symbol binding failed: Symbol not found: ___bzero&lt;br /&gt;  Referenced from: /Users/M/Downloads/john/run/./john&lt;br /&gt;  Expected in: /usr/lib/libSystem.B.dylib&lt;br /&gt;&lt;br /&gt;Would anyone be willing to help me with this?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/9003106465823043659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/9003106465823043659'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1310775049887#c9003106465823043659' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1916058703'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-1239115092203590541</id><published>2011-07-05T05:19:52.241-07:00</published><updated>2011-07-05T05:19:52.241-07:00</updated><title type='text'>Works perfect and shocked some clients with not so...</title><content type='html'>Works perfect and shocked some clients with not so strong passwords… ;) Now they use much more secure passwords because they know it better.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1239115092203590541'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1239115092203590541'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1309868392241#c1239115092203590541' title=''/><author><name>Marcel</name><uri>http://www.macon.cc</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1753586484'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-832242850709475882</id><published>2011-02-18T13:52:17.318-08:00</published><updated>2011-02-18T13:52:17.318-08:00</updated><title type='text'>dscl doesn&amp;#39;t work in single user mode on 10.6....</title><content type='html'>dscl doesn&amp;#39;t work in single user mode on 10.6. OSX returns an error about needing to enable it, but the command that OSX suggests doesn&amp;#39;t work.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/832242850709475882'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/832242850709475882'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1298065937318#c832242850709475882' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-218519691'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-888368084102375057</id><published>2011-02-13T16:15:56.696-08:00</published><updated>2011-02-13T16:15:56.696-08:00</updated><title type='text'>oh my god, you have been my saviour. I had an old ...</title><content type='html'>oh my god, you have been my saviour. I had an old macbookpro which I needed to resurrect and this information helped me to crack the forgotten password. Once I ran &amp;quot;John The Ripper&amp;quot;, it took 4 seconds to crack.&lt;br /&gt;&lt;br /&gt;BTW, I used a firewire cable to mount (Hold T when booting up) the old macbook to get to the hash files and extract the sha1 hash. Thanks muchly</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/888368084102375057'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/888368084102375057'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1297642556696#c888368084102375057' title=''/><author><name>jeffery</name><uri>http://www.jefferyfernandez.id.au/</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/openid16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1397436982'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-577595557856406746</id><published>2011-01-31T11:12:19.158-08:00</published><updated>2011-01-31T11:12:19.158-08:00</updated><title type='text'>tried cracking a 10.6.4 hash with the Jumbo patche...</title><content type='html'>tried cracking a 10.6.4 hash with the Jumbo patched JTR. let my macbook go at it for 30 hours with no success. is something wrong or am i just trying to crack a ridiculous password?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/577595557856406746'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/577595557856406746'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1296501139158#c577595557856406746' title=''/><author><name>PRiM3</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-276666443'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-3595486630376125303</id><published>2011-01-27T15:52:12.847-08:00</published><updated>2011-01-27T15:52:12.847-08:00</updated><title type='text'>sorry, thats really:

dscl . -read /Users/(usernam...</title><content type='html'>sorry, thats really:&lt;br /&gt;&lt;br /&gt;dscl . -read /Users/(username) GeneratedUID | cut -c15-</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3595486630376125303'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3595486630376125303'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1296172332847#c3595486630376125303' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-428638581'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-4497629690126407537</id><published>2011-01-27T15:50:51.659-08:00</published><updated>2011-01-27T15:50:51.659-08:00</updated><title type='text'>For OS 10.6.3, the first command should be changed...</title><content type='html'>For OS 10.6.3, the first command should be changed to:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;dscl . -read /Users/ GeneratedUID | cut -c15-</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/4497629690126407537'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/4497629690126407537'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1296172251659#c4497629690126407537' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-428638581'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-7869336908551720683</id><published>2010-10-07T12:17:16.714-07:00</published><updated>2010-10-07T12:17:16.714-07:00</updated><title type='text'>your password must be &amp;quot;bob1900&amp;quot; without ...</title><content type='html'>your password must be &amp;quot;bob1900&amp;quot; without the quotes &amp;quot;&amp;quot; right ?!!&lt;br /&gt;&lt;br /&gt;you really want to use the --single MOD when first crack or you are not sure what MOD to use, like so:&lt;br /&gt;# ./john --single sha1.txt</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/7869336908551720683'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/7869336908551720683'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1286479036714#c7869336908551720683' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-528399737'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-638227542729529891</id><published>2010-10-06T02:10:54.341-07:00</published><updated>2010-10-06T02:10:54.341-07:00</updated><title type='text'>ok i found the solution (my comment is the previou...</title><content type='html'>ok i found the solution (my comment is the previous one (SL 10.6.4)) &lt;br /&gt;&lt;br /&gt;the &amp;quot;jumbo patch&amp;quot; does the trick !</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/638227542729529891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/638227542729529891'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1286356254341#c638227542729529891' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-528399737'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-3265936882503306149</id><published>2010-10-06T01:42:26.840-07:00</published><updated>2010-10-06T01:42:26.840-07:00</updated><title type='text'>hello,

i tried this guide on a mbp running SL 10....</title><content type='html'>hello,&lt;br /&gt;&lt;br /&gt;i tried this guide on a mbp running SL 10.6.5 as root, but i keep getting the error &amp;quot;No password hashes loaded&amp;quot; in the final step.&lt;br /&gt;&lt;br /&gt;i followed all steps and i made sure there is no syntax error within the previous commands, but jtr seems to be unable to extract the password from the hash in the end.&lt;br /&gt;&lt;br /&gt;anyone have an idea maybe ?!</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3265936882503306149'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3265936882503306149'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1286354546840#c3265936882503306149' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-528399737'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-2578765137095923280</id><published>2010-09-23T13:31:07.302-07:00</published><updated>2010-09-23T13:31:07.302-07:00</updated><title type='text'>Would be glad if someone could help me. I have JTR...</title><content type='html'>Would be glad if someone could help me. I have JTR, however is it possible to provide a COPY/PASTE code for entry in the Mac Terminal to CRACK &amp;#39;login.keychain&amp;#39;? &lt;br /&gt;&lt;br /&gt;I have searched the entire web which offers JTR posts in complicated terms. I think this would be helpful to ALL who have this need. This tutorial is great. Would be very nice if the same step-step could be out here for the keychain file.&lt;br /&gt;&lt;br /&gt;Thanks in advance!</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/2578765137095923280'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/2578765137095923280'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1285273867302#c2578765137095923280' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1427745704'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-1020352170494056816</id><published>2010-09-06T21:54:33.429-07:00</published><updated>2010-09-06T21:54:33.429-07:00</updated><title type='text'>I have my password hash and I have the latest vers...</title><content type='html'>I have my password hash and I have the latest version of john the ripper jumbo patch for mac osx. how  do i compile the run file found in the package, and do I even need to do that?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1020352170494056816'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1020352170494056816'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1283835273429#c1020352170494056816' title=''/><author><name>TJ</name><uri>http://www.blogger.com/profile/12668485807151844319</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1565314402'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-2074001333551368931</id><published>2010-06-03T02:16:26.630-07:00</published><updated>2010-06-03T02:16:26.630-07:00</updated><title type='text'>@andrew.stinton

Try typing the command in manuall...</title><content type='html'>@andrew.stinton&lt;br /&gt;&lt;br /&gt;Try typing the command in manually instead of copy/paste. Let me know how you go :)</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/2074001333551368931'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/2074001333551368931'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1275556586630#c2074001333551368931' title=''/><author><name>Patrick Dunstan</name><uri>http://www.blogger.com/profile/13753676441901080995</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1755014544'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-480858018620344259</id><published>2010-06-02T19:32:01.616-07:00</published><updated>2010-06-02T19:32:01.616-07:00</updated><title type='text'>Mackaber,
I am sending the command from root. I be...</title><content type='html'>Mackaber,&lt;br /&gt;I am sending the command from root. I believe that there is an issue with the snytax of the first command when sent to the 10.6.3 kernel&lt;br /&gt;demonstration here:&lt;br /&gt;http://docs.google.com/View?id=dgpcw55k_42hp993fgv</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/480858018620344259'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/480858018620344259'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1275532321616#c480858018620344259' title=''/><author><name>andrew.stinton</name><uri>http://www.blogger.com/profile/03720209793239647771</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1312771253'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-3289192911243186998</id><published>2010-06-02T11:40:22.814-07:00</published><updated>2010-06-02T11:40:22.814-07:00</updated><title type='text'>you can enter to verbose mode before the computer ...</title><content type='html'>you can enter to verbose mode before the computer stars by pressing &amp;#39;cmd + s&amp;#39; then you have root access immediately to everything therefore you can follow this and crack any mac</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3289192911243186998'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/3289192911243186998'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1275504022814#c3289192911243186998' title=''/><author><name>Mackaber</name><uri>http://www.blogger.com/profile/10090654280421049626</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_3dXAzxMTuFw/Sntb2IGOzmI/AAAAAAAAAe8/7dm7NXYu-D4/S220/ML2009.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1179691207'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-1294903505893144309</id><published>2010-05-31T15:27:51.962-07:00</published><updated>2010-05-31T15:27:51.962-07:00</updated><title type='text'>I believe the syntax is incorrect for step 1 when ...</title><content type='html'>I believe the syntax is incorrect for step 1 when used in 10.6</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1294903505893144309'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/1294903505893144309'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1275344871962#c1294903505893144309' title=''/><author><name>andrew.stinton</name><uri>http://www.blogger.com/profile/03720209793239647771</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1312771253'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-936957597117766027</id><published>2010-03-31T02:01:23.331-07:00</published><updated>2010-03-31T02:01:23.331-07:00</updated><title type='text'>Greg,

Thanks for your comments!

Yes, unfortunate...</title><content type='html'>Greg,&lt;br /&gt;&lt;br /&gt;Thanks for your comments!&lt;br /&gt;&lt;br /&gt;Yes, unfortunately (for us) this is how Unix and Unix-based variants deal with passwords. A shadowed password means that only those with the relevant privileges (typically root) can view them.&lt;br /&gt;&lt;br /&gt;Password cracking in this instance would be used when you have already exploited/gained access to the system.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/936957597117766027'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/936957597117766027'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1270026083331#c936957597117766027' title=''/><author><name>Patrick Dunstan</name><uri>http://www.blogger.com/profile/13753676441901080995</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1755014544'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-276495422270389242</id><published>2010-03-30T09:46:29.866-07:00</published><updated>2010-03-30T09:46:29.866-07:00</updated><title type='text'>Tried it with sudo just for fun, but need the pass...</title><content type='html'>Tried it with sudo just for fun, but need the password that I&amp;#39;m trying to find.&lt;br /&gt;&lt;br /&gt;Irony ^_^</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/276495422270389242'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/276495422270389242'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1269967589866#c276495422270389242' title=''/><author><name>GregTheGerg</name><uri>http://www.blogger.com/profile/01011051359735385939</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://2.bp.blogspot.com/_94Fem2Isb7E/S4QbzdgujjI/AAAAAAAAAqQ/xloXhb5S8yk/S220/Avatar+Guns.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-717883515'/></entry><entry><id>tag:blogger.com,1999:blog-248147735868857337.post-535157633003207821</id><published>2010-03-30T09:45:07.473-07:00</published><updated>2010-03-30T09:45:07.473-07:00</updated><title type='text'>The only problem I get with this so far is the sec...</title><content type='html'>The only problem I get with this so far is the second command with the cat gets me a Permission denied.&lt;br /&gt;&lt;br /&gt;Could&amp;#39;ve been awesome to know.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/535157633003207821'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/248147735868857337/6430698429448134429/comments/default/535157633003207821'/><link rel='alternate' type='text/html' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html?showComment=1269967507473#c535157633003207821' title=''/><author><name>GregTheGerg</name><uri>http://www.blogger.com/profile/01011051359735385939</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://2.bp.blogspot.com/_94Fem2Isb7E/S4QbzdgujjI/AAAAAAAAAqQ/xloXhb5S8yk/S220/Avatar+Guns.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.defenceindepth.net/2009/12/cracking-os-x-passwords.html' ref='tag:blogger.com,1999:blog-248147735868857337.post-6430698429448134429' source='http://www.blogger.com/feeds/248147735868857337/posts/default/6430698429448134429' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-717883515'/></entry></feed>
