ikeforce icon indicating copy to clipboard operation
ikeforce copied to clipboard

Crash while running brute force

Open ghost opened this issue 8 years ago • 3 comments

I attempted to run a brute force and got the following error:

root@wopr:/opt/ikeforce# ./ikeforce.py 1.2.3.4 -b -k ******** -i DefaultRAGroup -u cisco -w 500-worst-passwords.txt '

[+]Program started in XAUTH Brute Force Mode [+]Single user provided - brute forcing passwords for user: cisco Press return for a status update Traceback (most recent call last): File "./ikeforce.py", line 1876, in respDict,vidHolder = ikeHandling.main(packets[-1],encType,hashType,encKey,initIV,curIV) ValueError: too many values to unpack

ghost avatar Sep 14 '16 23:09 ghost

More context from --debug: Parsing Mode Config Payload: Next Payload: NONE Payload Length: 20 Mode Config Message Type: ISAKMP_CFG_REQUEST Mode Config ID: 0

Mode CFG Payload: c088000040890000408a0000 Mode Config Attribute Type: XAUTH_TYPE (16520) Mode Config Attribute Value: 0 Mode Config Attribute Type: XAUTH_USER_NAME (16521) Mode Config Attribute Length: 0 Mode Config Attribute Value: () Mode Config Attribute Type: XAUTH_USER_PASSWORD (16522) Mode Config Attribute Length: 0 Mode Config Attribute Value: () Traceback (most recent call last): File "./ikeforce.py", line 1074, in respDict,vidHolder = ikeHandling.main(packets[-1],encType,hashType,encKey,initIV,curIV) ValueError: too many values to unpack

ghost avatar Sep 15 '16 00:09 ghost

Thanks for reporting this. I'll see if I can track it down over the weekend, is the crash reproduced every time you run it?

f0cker avatar Sep 16 '16 11:09 f0cker

I tried various ways of running it and it kept crashing. Based on the debug looks like it wasn't parsing the packets right. Perhaps there is a variance in the structure. I'll do my best to get you some pcaps but it's a client device so I'll have to sanatize a bit

Get Outlook for iOShttps://aka.ms/o0ukef

On Fri, Sep 16, 2016 at 7:01 AM -0400, "f0cker" <[email protected]mailto:[email protected]> wrote:

Thanks for reporting this. I'll see if I can track it down over the weekend, is the crash reproduced every time you run it?

You are receiving this because you authored the thread. Reply to this email directly, view it on GitHubhttps://github.com/SpiderLabs/ikeforce/issues/3#issuecomment-247573983, or mute the threadhttps://github.com/notifications/unsubscribe-auth/AT5unm9ucc2oA3meiVuMIfBv-jYyY-jkks5qqncLgaJpZM4J9Wqv.

ghost avatar Sep 16 '16 11:09 ghost