Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <CABob6irdtVQkPUz+-KPu171WGf4fZdqA4Th2xy_CP396_doV5w@mail.gmail.com>
Date: Wed, 24 Jul 2013 22:37:03 +0200
From: Lukas Odzioba <lukas.odzioba@...il.com>
To: john-dev@...ts.openwall.com
Subject: gg2john

This tool is able to convert sniffed unencrypted gadu-gadu
authentication packages to dynamic_24 format.
Authentication is based on sha1(pass.salt) hash where salt is sent to
client in the GG_WELCOME message.
Tool does not support deprecated "GG32" "hash function" used by ancient clients.

Also have in mind that password in plaintext may be sent via HTTP to
server during registration process.

Output format:
gadu-gadu number:$dynamic_24$sha1(pass.salt)$HEX$salt$

Tested on:
ekg: 10.1.0.11070
kadu 0.12.3
pidgin 2.10.6

Lukas

Download attachment "gg2john.py" of type "application/octet-stream" (1667 bytes)

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.