Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <48a9047a-243e-4572-85d6-e7e32a02ffe7@club-internet.fr>
Date: Fri, 29 May 2026 15:33:18 +0200
From: Gilles Desvilles <desville@...b-internet.fr>
To: john-users@...ts.openwall.com
Subject: Your NTLM test hash matches my real SAM hash – coincidence ?

>  Hi,
>
> I extracted my Windows SAM with
>
> pypykatz registry --sam SAM --security SECURITY system
>
> and got NTLM = 51e3e145a42e9a0bcf6090e4428a574d
>
> That's exactly the example hash used in John the Ripper 
> documentation/tests.
>
> Probability seems astronomically low — is this hash hard-coded 
> somewhere as a test vector, or is it just a funny coincidence ?
>
> Thanks for the great tool,
>
> Giles

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.