12 Dec 2008 08:00
Due to the baby and other children my nslu2 has been forgotten, so forgotten that after a power cut I could not ssh in.
i removed the USB stick acting as its main hard drive and copied the shadow password file over to my AMD64 main machine.
time to crack one password, which according to popular belief should take minutes if not seconds.
amd64# john --user=root /tmp/nslug/etc/shadow
Loaded 1 password hash (FreeBSD MD5 [32/64 X2])
guesses: 0 time: 0:14:26:10 (3) c/s: 5695 trying: pigbetie - pigbetiv
guesses: 0 time: 0:14:26:15 (3) c/s: 5695 trying: pittedae - pittedav
guesses: 0 time: 0:14:33:37 (3) c/s: 5695 trying: pulinov8 - pulinovi
guesses: 0 time: 0:23:48:09 (3) c/s: 5694 trying: 485ideth - 485idet1
guesses: 0 time: 0:23:53:04 (3) c/s: 5694 trying: sumsled! - sumsled6
guesses: 0 time: 0:23:53:16 (3) c/s: 5694 trying: subufanc - subufano
guesses: 0 time: 1:12:18:30 (3) c/s: 5695 trying: TAZb21 - TAZb24
guesses: 0 time: 3:00:04:34 (3) c/s: 5693 trying: ajd3w1 - ajd3w9
guesses: 0 time: 3:14:17:06 (3) c/s: 5694 trying: kj,f3l - kj,f3m
guesses: 0 time: 4:05:51:41 (3) c/s: 5694 trying: Knnxt9 - Knnxt6
guesses: 0 time: 4:12:49:17 (3) c/s: 5811 trying: tt771iv - tt771ov
guesses: 0 time: 4:12:49:22 (3) c/s: 5811 trying: tjcecot - tjcect7
guesses: 0 time: 5:01:31:06 (3) c/s: 6058 trying: jkua3f - jkua3p
guesses: 0 time: 5:01:31:14 (3) c/s: 6059 trying: jlayit - jlayie
guesses: 0 time: 5:23:57:33 (3) c/s: 6399 trying: thrmez26 - thrmez28
guesses: 0 time: 5:23:57:35 (3) c/s: 6399 trying: thrm1as6 - thrm1asa
notroot         (root)
guesses: 1 time: 6:13:10:54 (3) c/s: 6554 trying: notrook - notroot

One caveat, I did not use a dictionary file.
Each time I pressed enter a status line (as above appeared), thats right it took six DAYS 13 hours to crack the root password that was the uninspiring "notroot".
Time to change my password.
01 Dec 2008 22:21
Oops and the link for positech200 is http://www.pay4foss.org/jumpstation/Positech2000/
01 Dec 2008 22:19
Another month another silverlight game/thingy.
This one takes your search results from live.com and launches them via parabolic trajectories into 'Positive' and 'Negitive' buckets, too determine the 'truth' of your search.
Search terms also burst in a fireworks type display and there is time controlling wheel.
Beyond useless, full source is available.


Search screen

Parabolic trajectories everywhere

The results are in

01 Dec 2008 22:13
http://www.iminlikewithyou.com and select 'Draw my thing'
I spent many an hour on this digital pictionary clone, best thing, no need to sign up just play and have fun.
