Sunday, February 12, 2012

Analysis Of Leaked NASA Passwords

NASA has yet again been hacked and their data leaked. The data can be found as a list of accounts or a full SQL dump with a size of 6.6Gb. The leak contains a total of 444 passwords.

No passwords were cracked as the passwords were in cleartext.

The Results

Length distribution
 
Average password length: 8,479729

Character distribution
 

Unique character distribution


Contained in common wordlists
 

Contained in IQ wordlist (Click here for more info)


Top 30 most common passwords


Password Frequency
ERA2011 9
Nasa1234 8
llama 5
green 5
bd122253 5
dixie777 4
Jud4532 3
password 3
Mar0ngelli 3
12345 3
123456 3
Wes&Jo4Ever 2
mdjwaj35 2
Nicole12 2
VDkiwilander 2
Nasalarss08 2
Matt1q!Q 2
chs12345 2
vote 2
keithwa 2
!QAZ1qaz 2
reset123 2
letmein 2
abc123 2
test 2
amsco86 2
1dragon 2
firstship1 2
nasa1234 2
iitdreamer1 2

Top 30 longest passwords


Password Length
$kF9(8{pc%{^6Cn3v4N28,3@&@43qt 30
henry.p.russell@nasa.gov 24
Hopemontcircle358 17
2vote4vid@LaRC! 15
Club123Club123! 15
JupiterPl@net5 14
PortWarwick12* 14
c,=$*06iT~gPht 14
JacksonHole690 14
samanapatiala 13
Tni2wg22@1234 13
Endwave!@#123 13
blackpearl007 13
varshavarsha1 13
peashooterP26 13
BlueMoon#8354 13
Shummies@5272 13
vreauCosmin13 13
greenaviation 13
123Mic=hel123 13
Kokalolloms86 13
shadow5714(4) 13
Steve@123456# 13
Wallflowers#1 13
Funvegas2009! 13
Tiff20045467! 13
VotesCount123 13
prasannakumar 13
Ymqcaadp#1232 13
nMPPOle^ed042 13

Power-Blog.com Password Leak Analysis

Power-Blog.com was hacked and their database released. The leak contains a total of 5860 MD5 hashes. The data contains 3 hashes of passwords normally used by automated SQLi tools, this might indicate that the website was hacked by an SQLi flaw in the website.

A total of 5067 hashes were cracked. That is 86,46%. It took 4 hours and 19 minutes to crack them.

The Results

Length distribution
 
Average password length: 7,5267466

Character distribution
 

Unique character distribution


Contained in common wordlists
 

Contained in IQ wordlist (Click here for more info)


Top 30 most common passwords

Password Frequency
123456 161
apples12 30
000000 14
super123 14
786000 14
sonor98 13
19661102 13
123456789 11
111111 11
112233 9
success 9
qwerty123 7
powerblog 7
marina 7
123456abc 6
58138948 6
654321 6
12345678 5
lovexinh 5
7550708 5
killer9987 4
eudoh065 4
666888 4
82338233 4
tt1314520 4
abc123 4
lddocbz 4
asdfasdf 4
444444 4
Knight 4

Top 30 longest passwords


Password Length
Chidvilasananda 15
nguyentrongtinh 15
unitedstatesofa 15
zaihuishou2008 14
trequan1234567 14
hatamikia2006 13
divertisment 12
198005231234 12
lovelygirl16 12
adnan12ahsan 12
amalgamation 12
123456abcdef 12
fiddlefaddle 12
lasvegas2009 12
ranveersingh 12
blessings888 12
198403160316 12
liverpool296 12
eaglesong777 12
emamzaman12 11
09324115296 11
smartnet456 11
lovelove123 11
greenfields 11
makemoney77 11
vatanperver 11
super77star 11
edumedicina 11
caterpillar 11
13631365772 11