|
#1
|
|||
|
|||
pkzip password
Hi everyone,
I am trying to brute-force a password for a zip file. It is encypted with ZipCrypto Deflate. Using John or Hashcat this will take for ever. The zip file contains multiple files, good thing is that there is a xml file in there. I am now trying to get the master key by using bkcrack. First problem is I can not compile bkcrack. Does someone have a binary for windows? Maybe someone does have a better solution for this zip file. Hope someone can help. -e |
#2
|
|||
|
|||
Deflate is compression method.
Zip encryption may be classic or AES. Former gives much more chances. |
The Following User Says Thank You to ketan For This Useful Post: | ||
eychei (02-23-2020) |
#3
|
|||
|
|||
#4
|
|||
|
|||
Ok trying rbkcrack will report.
Thx |
#5
|
|||
|
|||
Its me again
I am hitting a wall here. So I have a ZipCrypto Deflate XML file in a Zip. This XML file does start with a <?xml version="1.0" . When using rbkcrack I can get a key buuuuttt this seems not to work for extrating the files. This is reasonable because the file is also compressed and my plaintext is not. I compiled bkcrack and p7zip just to make sure. No change in the key. So my problem is, how can I find the deflated plaintext for the XML file? Can I just use the first 19 bytes and zip it with deflate and use the hex bytes for the attack? How can I find the exact compression method. Because changing anything (compression rate) will change the data. -e |
#6
|
|||
|
|||
On the github you can read example/tutorial.md. it answers this: https://github.com/Aloxaf/rbkcrack/blob/master/example/tutorial.md
So you need to check if the XML is stored or deflated. If its stored you can easily use your 12 bytes of plain text to crack it. If its deflated the attack is no longer practical and you are better off hunting the web for the full XML file. Also some XML files can have UTF byte markers or even non standard white space at the start, not all are clean xml. Something else to consider. |
#7
|
|||
|
|||
just in case you still wanna play with it, this is bkcrack binary for windows, compiled using the sources from git
|
The Following User Says Thank You to ionioni For This Useful Post: | ||
eychei (02-24-2020) |
#8
|
|||
|
|||
@chants
I did read the tutorial and unfortunately my file is deflated. I will try to search for some files in the net. @ionioni thanks for the compiled windows version. I did compile it in ubuntu but will use your windows version instead. |
Tags |
pkzip, zip, zipcrypto |
Thread Tools | |
Display Modes | |
|
|
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
Best way to get a rar password? | Rhodium | General Discussion | 4 | 01-27-2004 22:57 |