Practicality of Hashcat, etc. on non-simple passwords?

Posted this question elsewhere, but I’m just wondering about the utility (practicality) of brute-force hash cracking a non-trivial password…

If we have something like a plain vanilla, non-salted, SHA-256 hash with the password being 14 characters of non-dictionary (intentionally mis-spelled) words and a few symbols/digits.

For argument’s sake, lets say the symbols/numbers are not conveniently at the beginning or end of the password! Also, let’s assume you checked haveibeenpwned to see if your chosen words are not in password lists and essentially not simple variations (ie: p@ssword, more like “Lewser” or something like that…).

If it is even theoretically possible, what kind of hashpower would be needed; a modest six-card mining rig, a couple of BTC ASICs, the entire BTC mining network ;)?

Thanks!

submitted by /u/rdude777
[link] [comments]

February 15, 2023
Read More >>