Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Date: Sun, 22 Jul 2012 19:27:04 +0400
From: Alexander Cherepanov <>
Subject: pkzip format: length of filename recorded in hash?


I was suprised to learn that zip2john records the length of filenames in 
hashes. An example:

$ cp -a
$ zip2john a*.zip 2> /dev/null$pkzip$1*2*3*0*4f7e*9c40*5f655957*0*48*8*6*ac6f**$/pkzip$$pkzip$1*2*3*0*4f7e*9c40*5f655957*0*48*8*5*ac6f**$/pkzip$

(the line for "" contains "*6*", for "" -- "*5*").

The problem with this evident -- you cannot just move files and change 
paths in hashes.

Is it for a reason?

Alexander Cherepanov

Powered by blists - more mailing lists

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.