I was testing an old attack to capture MSCHAPv2 challenge and response using free radius- wpe edition. The setup does not use certificate validation and uses PEAP.
I successfully captured many Challenge and response pairs.
Cracking them is a tiresome process and requires huge computational and storage power. The dictionary attack may or may not succeed.
So I was thinking that is it possible to set some static challenge in my free radius server e.g 1122334455667788 and then capture the response. This will allow me to use rainbow tables and significantly reduce my time.
Aucun commentaire:
Enregistrer un commentaire