Forum Discussion

Amie's avatar
Amie
Icon for Bronze I rankBronze I
26 days ago
Solved

Credential Access: Password Hashing Algorithms

Hi,

I'm stuck on Question 10 for this lab: 

Using the HashID tool, what is the hashing algorithm for the hash $racf$*IMMERSIVE*5AA70358A9C369E0?

HashID returns 'unknown hash' and the best I can find by cracking it in other tools is 'Half MD5' which is coming up as incorrect.

Am I missing something for this one please?

Thank you :)

  • You need to take a closer look at the output of a failed attempt (I'm guessing that's what you see):

    iml-user@password-hashes:~$ hashid $racf$*IMMERSIVE*5AA70358A9C369E0
    Analyzing 'IMMERSIVE*5AA70358A9C369E0'
    [+] Unknown hash

    So provided hash starts with an $ but when you read the results you can see that the string that is analyzed starts from IMMERSIVE and few starting chars are omitted.

    You need to escape the hash so it's analyzed in full, without cutting parts of it.

     

     

2 Replies

  • You need to take a closer look at the output of a failed attempt (I'm guessing that's what you see):

    iml-user@password-hashes:~$ hashid $racf$*IMMERSIVE*5AA70358A9C369E0
    Analyzing 'IMMERSIVE*5AA70358A9C369E0'
    [+] Unknown hash

    So provided hash starts with an $ but when you read the results you can see that the string that is analyzed starts from IMMERSIVE and few starting chars are omitted.

    You need to escape the hash so it's analyzed in full, without cutting parts of it.

     

     

  • I was indeed missing something! 

    I had tried the typical way and didn't realise I could have used an alternative, thank you! It always seems straightforward when you know the answer!🤦‍♀️