Hashcat

Tools & Defense

Password Cracking with Hashcat: Modes and Strategy

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Security

Password Storage Done Right: bcrypt, scrypt, and Argon2

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Active Directory

Timeroasting: Abusing NTP Authentication in Active Directory

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Active Directory

AS-REP Roasting: Abusing Accounts Without Kerberos Pre-Authentication

How attackers extract and crack Kerberos AS-REP hashes from accounts with pre-authentication disabled, and how blue teams defend.
Tools & Defense

Password Cracking with Hashcat: Modes, Rules, Masks, and Cracking NTLM & Kerberos

A practical guide to Hashcat: hash modes, rule-based and mask attacks, and cracking NTLM and Kerberos hashes plus how to defend.
Tools & Defense

John the Ripper in Practice: From Hash Extraction to Rule-Based Cracking

A practical guide to John the Ripper: *2john extraction, format detection, wordlist and rule-based attacks, plus blue-team defenses.