IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Windows passwords easily revealed
There's been linux-based tools out to reset passwords on windows machines for awhile now, but this is just head-shakingly pathetic.

[link|http://biz.yahoo.com/prnews/040826/phth023_1.html|http://biz.yahoo.com...26/phth023_1.html]

The online passwords of hundreds of millions of Microsoft Windows users are exposed and vulnerable. This fact will be revealed to the public on September 1 when New York-based KMGI Group releases its new SeePassword software.

Masterfully simple and increasingly useful, SeePassword technology allows forgotten passwords to be easily and quickly retrieved. In the age of cell/fax/phone numbers, virtual/email/physical addresses and routing/account/PIN numbers, passwords regularly get forgotten. SeePassword provides the consumer with a welcomed tool for resolving this problem. Users just drag a magnifying-glass-shaped interface over the asterisks and see the forgotten password hidden behind them.
--
Steve
New Not sure which passwords in question?
Do they mean like the password that allows you to log onto XP, or does it affect other programs as well, like Eudora, your personal ISP, and Yahoo?

Just a little confused about MS Passwords, not sure what they are.

Nightowl >8#



"A determined soul will do more with a rusty monkey wrench than a loafer will accomplish with all the tools in a machine shop." -- Robert Hughes, Australian Art Critic, Writer
New This only goes to show you Passwords are not the...
best thing to use for security.

Personally, I tend to use keys.
--
[link|mailto:greg@gregfolkert.net|greg],
[link|http://www.iwethey.org/ed_curry|REMEMBER ED CURRY!] @ iwethey
No matter how much Microsoft supporters whine about how Linux and other operating systems have just as many bugs as their operating systems do, the bottom line is that the serious, gut-wrenching problems happen on Windows, not on Linux, not on Mac OS. -- [link|http://www.eweek.com/article2/0,1759,1622086,00.asp|source]
Here is an example: [link|http://www.greymagic.com/security/advisories/gm001-ie/|Executing arbitrary commands without Active Scripting or ActiveX when using Windows]
New Ummm ... I disagree
In order for a browser to "remember" passwords, they have to be kept somewhere the browser can see. If I felt like it I could check the Mozilla source and see where it puts it and look that info up pretty easily. What this really shows is how insecure the "remember this password" function really is. That's why I never use it.

And hey, they know that too:
"The public should have access to this technology," says Alex Konanykhin, CEO of KMGI, "not only for the benefits it will afford them, but to better understand how unprotected their private information currently is. Exposure is the first step to solving the problem."
Their tool isn't really the problem, and Windows users aren't the only ones vulnerable to this. The problem is the feature itself.
===

Implicitly condoning stupidity since 2001.
New Re: Ummm ... I disagree
Mozilla keeps it's password in "Documents and Settings\\username\\Application Data\\Mozilla\\Profiles\\default\\profileid\\########.s" the userid and password seem to be encrypted even if you have Encrypt Sensitive Data off. Note, username is a given, but profileid and ######## will be different on each computer.
~~~)-Steven----

"I want you to remember that no bastard ever won a war by dying for his country.
He won it by making the other poor dumb bastard die for his country..."

General George S. Patton
New Encrypted?
As in DMCA?

[link|http://www.holgermetzger.de/moz-passwords.html|http://www.holgermet...oz-passwords.html]
--

"...was poorly, lugubrious and intoxicated."

-- Patrick O'Brian, "Master and Commander"
New OK, didn't say it was well encrypted
~~~)-Steven----

"I want you to remember that no bastard ever won a war by dying for his country.
He won it by making the other poor dumb bastard die for his country..."

General George S. Patton
New Simpsons did it.
This kind of thing has been available for years.

[link|http://www.google.com/search?sourceid=navclient&ie=UTF-8&q=password+asterisks|http://www.google.co...assword+asterisks]
--
Chris Altmann
New OT: Auto abbreviation of URLs is sometimes amusing
Two out of three people wonder where the other one is.
New <snigger type=schoolboy/>


Peter
[link|http://www.debian.org|Shill For Hire]
[link|http://www.kuro5hin.org|There is no K5 Cabal]
[link|http://guildenstern.dyndns.org|Blog]
New This isn't real, right?
I mean, this is on a par with the [link|http://www.museumofhoaxes.com/spaghetti.html|spaghetti tree].


Peter
[link|http://www.debian.org|Shill For Hire]
[link|http://www.kuro5hin.org|There is no K5 Cabal]
[link|http://guildenstern.dyndns.org|Blog]
New Real in what way?
Real in the fact the somebody is trying to make a business out a stupid utility such as:
[link|http://www.lostpassword.com/asterisk.htm|http://www.lostpassword.com/asterisk.htm]

Or What?
New The software really exists?
/me falls over.


Peter
[link|http://www.debian.org|Shill For Hire]
[link|http://www.kuro5hin.org|There is no K5 Cabal]
[link|http://guildenstern.dyndns.org|Blog]
New Yup
Used snadboy years ago.
     Windows passwords easily revealed - (Steve Lowe) - (13)
         Not sure which passwords in question? - (Nightowl)
         This only goes to show you Passwords are not the... - (folkert)
         Ummm ... I disagree - (drewk) - (3)
             Re: Ummm ... I disagree - (Steven A S) - (2)
                 Encrypted? - (Arkadiy) - (1)
                     OK, didn't say it was well encrypted -NT - (Steven A S)
         Simpsons did it. - (altmann) - (2)
             OT: Auto abbreviation of URLs is sometimes amusing -NT - (Meerkat) - (1)
                 <snigger type=schoolboy/> -NT - (pwhysall)
         This isn't real, right? - (pwhysall) - (3)
             Real in what way? - (broomberg) - (2)
                 The software really exists? - (pwhysall) - (1)
                     Yup - (broomberg)

Eat your failures.
148 ms