Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 06 May 2015 00:38:21 +0200
From: Frank Dittrich <frank.dittrich@...lbox.org>
To: john-dev@...ts.openwall.com
Subject: Session names somename.[0-9]+ shouldn't be allowed

Solar,

IMHO, restricting the use of session names somename.[0-9]+ that might
would be the best way to avoid trouble with --fork.

I think such session names should be invalid for --session=, and
--restore= should not allow resuming if the .rec file contains a -fork=
line, but no --session= line matching the session name indicated by the
.rec file name.

Otherwise the behavior is quite confusing:

$ ./john --fork=3 hashes.bcrypt --format=bcrypt
Loaded 14 password hashes with 6 different salts (bcrypt [Blowfish 32/64
X2])
Remaining 12 password hashes with 6 different salts
Node numbers 1-3 of 3 (fork)
Press 'q' or Ctrl-C to abort, almost any other key for status
2 0g 0:00:00:01 7.10% 2/3 (ETA: 11:12:30) 0g/s 109.1p/s 659.1c/s 1320C/s
green1..helpme1
1 0g 0:00:00:01 0.15% 2/3 (ETA: 11:23:10) 0g/s 109.1p/s 657.1c/s 1316C/s
stephanie..stephen
3 0g 0:00:00:01 3.67% 2/3 (ETA: 11:12:43) 0g/s 109.1p/s 658.1c/s 1318C/s
William..Wilson
2 0g 0:00:00:03 7.21% 2/3 (ETA: 11:12:57) 0g/s 108.0p/s 648.9c/s 1298C/s
randy1..rebecca1
1 0g 0:00:00:03 0.25% 2/3 (ETA: 11:32:00) 0g/s 107.5p/s 647.9c/s 1296C/s
student..sunny
3 0g 0:00:00:03 3.77% 2/3 (ETA: 11:13:35) 0g/s 108.0p/s 648.9c/s 1298C/s
Winnie..Winter
3 0g 0:00:00:04 3.82% 2/3 (ETA: 11:14:00) 0g/s 107.2p/s 645.1c/s 1291C/s
Howard..Icecream
2 0g 0:00:00:04 7.26% 2/3 (ETA: 11:13:11) 0g/s 107.2p/s 645.5c/s 1291C/s
nancy1..nascar1
1 0g 0:00:00:04 0.30% 2/3 (ETA: 11:34:09) 0g/s 107.2p/s 644.7c/s 1290C/s
gabriel..galaxy
1 0g 0:00:00:05  2/3 0g/s 107.0p/s 643.2c/s 1287C/s porsche..porter
Waiting for 2 children to terminate
2 0g 0:00:00:05  2/3 0g/s 107.3p/s 644.2c/s 1288C/s crystal1..curtis1
3 0g 0:00:00:05  2/3 0g/s 107.3p/s 644.2c/s 1288C/s Shelby..Shit
Session aborted
$ ./john --fork=3 hashes.md5crypt --format=md5crypt --session=john.3
Loaded 26 password hashes with 23 different salts (md5crypt, crypt(3)
$1$ [MD5 128/128 AVX 4x3])
Node numbers 1-3 of 3 (fork)
Press 'q' or Ctrl-C to abort, almost any other key for status
12345678         (?)
password         (?)
password         (?)
1234             (?)
                 (?)
                 (?)
password         (?)
password         (?)
john             (?)
test             (?)
test1            (?)
ripper           (?)
test1            (?)
the              (?)
2 3g 0:00:00:01  2/3 1.507g/s 1573p/s 31778c/s 36518C/s eieio1..jan1
1 11g 0:00:00:01  2/3 5.527g/s 1622p/s 28046c/s 28076C/s wibble..123go
3 0g 0:00:00:01  2/3 0g/s 1398p/s 32213c/s 36428C/s Jump..Lamer
Waiting for 2 children to terminate
Use the "--show" option to display all of the cracked passwords reliably
Session aborted
$ ./john --restore=john
Loaded 13 password hashes with 6 different salts (bcrypt [Blowfish 32/64
X2])
Remaining 12 password hashes with 6 different salts
Node numbers 1-3 of 3 (fork)
2 0g 0:00:00:06 7.31% 2/3 (ETA: 11:14:17) 0g/s 106.6p/s 640.0c/s 1280C/s
crystal1
3 11g 0:00:00:02 3.56% 2/3 (ETA: 11:13:55) 5.500g/s 1614p/s 27906c/s
27936C/s Password
Press 'q' or Ctrl-C to abort, almost any other key for status
1 0g 0:00:00:06 0.36% 2/3 (ETA: 11:41:01) 0g/s 106.3p/s 639.0c/s 1278C/s
porsche
3 11g 0:00:00:03 3.67% 2/3 (ETA: 11:14:21) 3.666g/s 1148p/s 19040c/s
19496C/s Alpha..Amber
2 0g 0:00:00:07 7.43% 2/3 (ETA: 11:14:30) 0g/s 122.5p/s 735.4c/s 1470C/s
baby1..babydoll1
1 0g 0:00:00:07 0.46% 2/3 (ETA: 11:38:24) 0g/s 121.1p/s 727.7c/s 1456C/s
dylan..eagle
1 0g 0:00:00:08 0.51% 2/3 (ETA: 11:39:05) 0g/s 119.0p/s 715.5c/s 1432C/s
mariah1..marilyn
3 11g 0:00:00:04 3.72% 2/3 (ETA: 11:14:47) 2.750g/s 887.5p/s 14436c/s
14936C/s Dreamer..Dreams
2 0g 0:00:00:08 7.48% 2/3 (ETA: 11:14:42) 0g/s 120.2p/s 722.2c/s 1445C/s
francine1..francois1
1 0g 0:00:00:09 0.56% 2/3 (ETA: 11:39:42) 0g/s 117.3p/s 705.1c/s 1411C/s
serena..shanti
2 0g 0:00:00:09 7.54% 2/3 (ETA: 11:14:55) 0g/s 118.4p/s 711.1c/s 1422C/s
nautica1..nellie1
3 11g 0:00:00:05 3.77% 2/3 (ETA: 11:15:12) 2.200g/s 730.0p/s 11670c/s
12191C/s Travel..Tuesday
1 0g 0:00:00:11 0.66% 2/3 (ETA: 11:40:36) 0g/s 115.0p/s 692.0c/s 1384C/s
boxers..brandi
2 0g 0:00:00:11 7.66% 2/3 (ETA: 11:15:19) 0g/s 116.0p/s 696.7c/s 1393C/s
babes1..bambi1
3 11g 0:00:00:07 3.87% 2/3 (ETA: 11:16:00) 1.571g/s 551.7p/s 8516c/s
9069C/s Scarlett..School
1 0g 0:00:00:13 0.77% 2/3 (ETA: 11:40:59) 0g/s 114.3p/s 686.4c/s 1373C/s
idiot..iforget
2 0g 0:00:00:13 7.78% 2/3 (ETA: 11:15:43) 0g/s 115.0p/s 690.4c/s 1380C/s
helene1..hellohello1
3 11g 0:00:00:09 3.98% 2/3 (ETA: 11:16:45) 1.222g/s 453.3p/s 6769c/s
7344C/s Gunner..Hannah
1 0g 0:00:00:15  2/3 0g/s 112.6p/s 676.5c/s 1353C/s poetry..pontiac
Waiting for 2 children to terminate
3 11g 0:00:00:11  2/3 1.000g/s 389.4p/s 5650c/s 6232C/s Swimmer..Swimming
2 0g 0:00:00:15  2/3 0g/s 113.3p/s 680.1c/s 1360C/s playboy1..pluto1
Session aborted
$ ./john --restore=john.3
Loaded 26 password hashes with 23 different salts (md5crypt, crypt(3)
$1$ [MD5 128/128 AVX 4x3])
Remaining 15 password hashes with 15 different salts
Node numbers 1-3 of 3 (fork)
3 0g 0:00:00:02 5.04% 2/3 (ETA: 11:13:54) 0g/s 1392p/s 32052c/s 36246C/s
Jump
2 3g 0:00:00:02 8.71% 2/3 (ETA: 11:13:37) 1.500g/s 1566p/s 31620c/s
36336C/s eieio1
Press 'q' or Ctrl-C to abort, almost any other key for status
1 11g 0:00:00:12 5.32% 2/3 (ETA: 11:16:50) 0.9166g/s 357.0p/s 5179c/s
5713C/s passwords
3 0g 0:00:00:02 9.67% 2/3 (ETA: 11:13:36) 0g/s 2388p/s 47076c/s 51270C/s
Roland1..Saint1
1 11g 0:00:00:12 6.41% 2/3 (ETA: 11:16:13) 0.9166g/s 521.0p/s 7640c/s
8174C/s skittleses..natalias
2 3g 0:00:00:02 13.36% 2/3 (ETA: 11:13:30) 1.500g/s 2556p/s 46542c/s
51258C/s oreiuqet..aleirbag
3 0g 0:00:00:04  2/3 0g/s 2142p/s 37719c/s 39816C/s 1testing..1pepper
1 11g 0:00:00:14  2/3 0.7857g/s 728.5p/s 10784c/s 11241C/s JENNY1..KATHY
2 3g 0:00:00:04  2/3 0.7500g/s 2247p/s 37797c/s 40155C/s pavel2..printing2
Waiting for 2 children to terminate
Session aborted


Frank

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.