e-axe`s small home :: blog
-------------------------------------------------------------------------
menu :: blog | projects | books | wishlists | about :: prev | next
-------------------------------------------------------------------------
how to "recover" check point passwords... [Fri Jan 8 22:37:58 CET 2010]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
dear visitor :)
i just wrote a small tool which generates a shadow like file out
of the check point fw1 (this might also work for other check point devices)
firewall authentication file (fwauth.ndb). the file is normally located
within the conf/ or database/ directory on the device and consists of
printable and non printable characters.
the passwords for the users managed by the device are stored in there
in 3des format.
http://mytty.org/nopaste/?pid=436
what you can do with the generated output? hmm... JTR?!
so long,
e-axe
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
there is always something stupid to do...