Wordlist mode rulesets for use with John the Ripper
These are some rulesets that you may put into your john.conf
file and invoke with –rules=NAME
(specifying the section NAME) on the command-line (this option syntax requires the jumbo patch).
KoreLogic-derived
-
-
KoreLogic rules above reworked by Solar Designer to make better use of the preprocessor (the file became 3 times smaller, and the number of lines 10 times smaller), to produce fewer duplicates (especially with length-limited and/or case-insensitive hash types), to generate some kinds of candidate passwords that were inadvertently missed by KoreLogic (because of implementation bugs in the original
rules.txt
), and to avoid generating candidate passwords that were likely being generated unintentionally (again, because of bugs).
-
A newer revision containing both the individual sections and all of them combined into a single KoreLogicRules section. In this revision, the individual sections have been included into the combined KoreLogicRules section roughly in the order of increasing number of candidate passwords generated by each of the former individual sections, thus making this combined section suitable for actual use. Also, the *CurrentYear* sections (and the corresponding lines of the combined KoreLogicRules section) have been updated to try years 2010 through 2019 (and not just 2010 alone) for the “current year”.
The rulesets above were
announced/documented on john-users.
The ruleset above was
announced/documented on john-users.
KoreLogic-localization
Simon Marechal's ongoing work towards an optimal ruleset
You'll need to remove the trailing ” NBPWD=…” from each line to use these rulesets.