Fill This Form To Receive Instant Help
Homework answers / question archive / CMIT 350 Week 8 Discussion Cisco Passwords Part 1: Type 5 Cisco Password Hashes To keep your routers, firewalls, and switches secure, they need good passwords
CMIT 350 Week 8 Discussion
Cisco Passwords
To keep your routers, firewalls, and switches secure, they need good passwords. Type 5 Cisco password hashes employ a technique called salting. Discuss password hashes and salting and discuss password cracking tools or websites that can be used to crack Cisco password hashes. Some of the most popular Linux tools are John the Ripper and Hashcat, which are both already included with the Kali Linux distribution. The Windows tool Cain can also crack Cisco passwords. Use the as is choice and the default wordlist that comes with Cain on the password hashes below. You may elect to crack some of them and explain how you did it for part of this discussion:
$1$mERr$TMFGl3gjZgTURz2zWGujv1
$1$mERr$j2lBkUQmIwqeeIUhzEMH/1
$1$mERr$UeZ8mb786UhNnpZquiKwc0
The Cisco type 7 password is not much better than putting the password in clear text, which is the default if you do not type the command service password-encryption. Discuss password hashes and discuss password cracking tools or websites that can be used to crack Cisco type 7 password hashes. Here is a list of some Cisco password hashes. You may elect to crack some of them and explain how you did it for part of this discussion.
11280B061F1B583342
532E26010C082B070B6F02
46152908515041
09611E590A565451
023057495B085E226D6E
062B3D0D1C4A0E4A44
Cisco Password Hashes
Type 5 Cisco Password hashes.
A scrambled password means it is an encrypted version of itself. This technique used is known a hashing. Password usage in a site is first hashed by the site algorithm and compared with the password in the site's record. Salting provides additional protection to hashing, and this ensures that the protection level is efficient. The salting process adds a random string of characters to the password before hashing process (Polpong & Wuttidittachotti, 2020). Therefore, hackers cannot use the record of previously hashed passwords since they are not similar to the current ones. Tools such as cracking tools and websites can recover the forgotten passwords, but it is illegal to use them to access an account that is not yours. Some of the examples of Cisco password cracking tools are Crack-station, Rainbow and Medusa. The online tools stated above can decrypt Cisco type 5 passwords since the passwords use MD5 hashes. These tools can successfully decrypt any MD5 password hashes.
Type 7 Cisco Password hashes.
Also, in type 7 Cisco password, a password hash means that that password has turned into a scrambled representation from an original form of itself for security purposes. For Cisco type 7 passwords to be used, the Vigenère algorithm is used. Here the password is not encrypted since no use of an encryption key. The hackers can spy on passwords by revising the site configuration; we can prevent this from happening using the type 7 hashing technique (Polpong & Wuttidittachotti, 2020). It may be possible and easier for them to retrieve and get the passwords using reversal translation of the Vigenère algorithm. Seven types of passwords get hashed using this algorithm. Cracking tools and websites which can crack Cisco type 7 passwords are Cisco password cracker- IFM, Decrypt Cisco Type 7passwords, Cisco type 7 password cracker and Password Decrypt. When Cisco password Cracker is used to crack the provided examples, this is our results,
11280B061F1B583342 Archi3_&
023057495B085E226D6E V3r0n1cA@
062B3D0D1C4A0E4A44 MRL0dg3!
References
Polpong, J., & Wuttidittachotti, P. (2020). Authentication and password storing improvement using SXR algorithm with a hash function. International Journal of Electrical and Computer Engineering (IJECE), 10(6), 6582-6591