Thursday, February 27, 2025
HomePassword CrackingGoCrack - Password Cracking Tool for Security Professionals to test Password Effectiveness

GoCrack – Password Cracking Tool for Security Professionals to test Password Effectiveness

Published on

SIEM as a Service

Follow Us on Google News

Passwords are the basic way to keep our data secure, easy to guess passwords and re-use of the password will increase the risk of being compromised.

With the 2016’s most common passwords list, nearly 17 percent of people secured their account with password “123456” according to the survey by Darren Guccione from 10 million passwords collected from data breaches and public sources.

FireEye team released a password cracking tool GoCrack which allows security professionals to manage their passwords across multiple servers with easy to use web interface.

password cracking

The admin module needs to be deployed on the server where the worker on each GPU/CPU capable machine and the system will automatically distribute tasks over those GPU/CPU machines.

Also Read Offline Password attack with John the Ripper – Tutorial

Password cracking tools help security professionals to audit current passwords and it’s effectiveness.They are used in internal auditing as well as offensive/defensive operations.

We’re releasing GoCrack to provide another tool for distributed teams to have in their arsenal for managing password cracking and recovery tasks.said FireEye.

GoCrack allows only the administrators to view the cracked passwords and for other sensitive actions and users are not privileged for it.It includes support of hashcat v3.6+, so it dosen’t require any external database connection.

Now it supports for LDAP and database backed authentication, in future they planned to enhance with MySQL and Postgres for huge deployments.

GoCrack available to download from Github repository.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Cisco Nexus Vulnerability Allows Attackers to Inject Malicious Commands

Cisco Systems has issued a critical security advisory for a newly disclosed command injection...

New Wi-Fi Jamming Attack Can Disable Specific Devices

A newly discovered Wi-Fi jamming technique enables attackers to selectively disconnect individual devices from...

GitLab Vulnerabilities Allow Attackers to Bypass Security and Run Arbitrary Scripts

GitLab has urgently released security updates to address multiple high-severity vulnerabilities in its platform...

LibreOffice Flaws Allow Attackers to Run Malicious Files on Windows

A high-severity security vulnerability (CVE-2025-0514) in LibreOffice, the widely used open-source office suite, has...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

‘123456’ Crackable in seconds, 2023’s Most Prevalent Password

For half a decade, NordPass has delved into the realm of password habits, uncovering...

StegCracker – Brute-force Utility to Uncover Hidden Data Inside Files

Steganography is the art of hiding messages covertly so that the sender and recipient...

USBStealer – Password Hacking Tool For Windows Applications to Perform Windows Penetration Testing

USBStealer is a Windows Based Password Hacker Tool that helps to Extract passwords from...