First, we will talk about my friend, Johnny. Johnny is a GUI frontend for my other friend, John. For most password cracking tasks, this is an easy way to use John. It uses the normal defaults for most password cracking sessions. Once you have captured some hashes, save them to a text file and open Johnny.
The following is a screenshot from the LxDE desktop showing where Johnny can be found. You can also find it on all the other desktops under the same header location, Applications | 05 - Password Attacks | johnny:
We are using the password hashes from a previous exploit earlier in the book, where we were passing the hash. We have shortened the list to only include the hashes of the two accounts that we think have critical access to the networked systems:
Once Johnny is open, click on the Open Passwd File button and pick the text file where you have saved the...