Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Also try bruteforcing the shadow backup file #1444

Merged
merged 2 commits into from
Feb 22, 2024
Merged

Conversation

Fryyyyy
Copy link
Collaborator

@Fryyyyy Fryyyyy commented Feb 22, 2024

The backup shadow file can be useful for determining what the password was, if the attackers changed it post-compromise.
Try and crack it, and also indicate where we got each cracked password from.

Copy link
Member

@aarontp aarontp left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Good idea, LGTM!

@aarontp
Copy link
Member

aarontp commented Feb 22, 2024

@Fryyyyy I didn't want to merge this since I wasn't sure if you were completely done with the PR, but feel free to merge it if you are. Thanks!

@Fryyyyy
Copy link
Collaborator Author

Fryyyyy commented Feb 22, 2024

I can't merge but PR is done and ready :)

@aarontp aarontp merged commit fa355a4 into google:master Feb 22, 2024
5 checks passed
@Fryyyyy Fryyyyy deleted the triv branch February 22, 2024 23:53
jleaniz pushed a commit to jleaniz/turbinia that referenced this pull request Feb 28, 2024
* Also try bruteforcing the shadow backup file

* Formatting
jleaniz pushed a commit to jleaniz/turbinia that referenced this pull request Mar 18, 2024
* Also try bruteforcing the shadow backup file

* Formatting
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants