[foofus-tools] Possible BUGS in fgdump/pwdump

Per Thorsheim putilutt at online.no
Wed Mar 4 13:51:16 PST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Gsecdump from the swedish guys at Truesec:
http://www.truesec.com/PublicStore/catalog/Downloads,223.aspx

Gsecdump is a tool for dumping lsa secrets, wireless connections, hashes
from active logon sessions and/or SAM/AD stored hashes. Version 0.6 is
at the above link, while a version 0.7 could earlier be found at
www.iforge.cc, but that domain seems to have disappeared.

The same page also has the msvctl tool for doing pass-the-hash attacks
(this one's for jmk at foofus... :-)). There are several video
demonstrations of this one, the "original" seems to have disappeared
from Microsoft.com
(http://www.itproffs.se/forumv2/tm.aspx?m=116705&mpage=1&key=&#116705).

But i think you can have a look at the same thing here:
http://www.microsoft.com/emea/spotlight/sessionh.aspx?videoid=351

Regards,
Per Thorsheim
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.10-svn4880 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkmu99QACgkQsXl+Y9DQrvbLuQCeLZSfBXbWR9ufXI4aZkMlFO/w
SswAnRb4BFjA+yx7M6or9wd86AjAIUog
=7uzi
-----END PGP SIGNATURE-----




More information about the foofus-tools mailing list