On The Subject of Password Hashes

So, I’ve been indulging in a lot of podcasts and media such as good ol’ Darknet Diaries and its very often when red hats recount their stories that they mention using a username of an account to recover the password hash for later cracking.

How is this done?

Is it an SQL exploit? HTML or CSS exploit? What is done in order to use a username to recover a hashed password? Or is it simply that because it can be used maliciously they leave out the details of the actual process and skip to the point?

submitted by /u/Temporary_Concept_29
[link] [comments]

March 24, 2023
Read More >>