ZeroBox

Password Cracking & Hash Identification

Offline password recovery: Hashcat modes cheat sheet, John the Ripper formats, and dictionary mutation rules.

hashcatjohnhash-identifier

High-performance GPU cracking with Hashcat recovers plaintext credentials from dumped password hashes.

1. Hashcat Essential Modes Reference

| Mode (-m) | Hash Format | Typical Source |

|---|---|---|

| 1000 | NTLM | Windows SAM / NTDS.dit |

| 1800 | SHA512crypt ($6$) | Linux /etc/shadow |

| 13100 | Kerberos 5 TGS | Active Directory Kerberoasting |

| 18200 | Kerberos 5 AS-REP | Active Directory AS-REP Roasting |

| 3200 | bcrypt ($2y$, $2a$) | Modern Web Databases |

| 16500 | JWT (JSON Web Token) | Web API Tokens |

2. Command Examples

  hashcat -m 1000 ntlm.hashes /usr/share/wordlists/rockyou.txt -O
  hashcat -m 13100 kerberoast.hashes /usr/share/wordlists/rockyou.txt -O

Use cracked administrative credentials for lateral movement in 06. Active Directory Attack Paths & Domain Enumeration.

More CPTS notes

Keep these notes in your own private vault. Open CPTS notes in ZeroBox