I just put AFS Kerberos Crack 4.1f up for anonymous ftp from
export.acs.cmu.edu:/pub/crack.tar.Z. This is an extension of Crack
4.1f (posted about a month ago to comp.sources.misc) to crack
passwords contained in the physical kerberos database on AFS db
servers. Please see the README-AFS file in the distribution for
the full release notes. This release has only been tested on
sun4c_411, although there should be no problems running it on other
architectures. Let me know about any difficulties.
Note for the security conscious: Crack requires the actual
kerberos database to operate, and as such this release cannot be used
to construct a remote cracking program. This is purely a preventative
sysadmin tool.
If there is interest, we could hold a WIP at the AFSUG later
this week to talk about this and other AFS security issues.
dan
cmu computing & communications