OS Labs
Incident response, incident analysis, forensics, IT investigations
Objectif Sécurité can help you find important information among log files, seized hard disks or traffic logs. In some cases our team can even recover protected or encrypted information, using the most advanced cryptographic techniques. Objectif Sécurité can also help in an investigation, for example by tracing back anonymous messages and connections or by assembling different clues to clear evidence.
Tools
In the course of their work, members of Objectif Sécurité get to develop their own tools and scripts. They also regularly test the newest tools and programs that are available. This practical expertise can be put to profit for our customers.
The following tools are available from Objectif Sécurité:
- ophcrack
Ophcrack, the worlds fastest Windows password cracker. This is the evolution of the original ophcrack developed by Philippe Oechslin at LASEC/EPFL. The features of ophcrack include:
- Recovers 99.9% of alphanumeric passwords in seconds.
- Graphical user interface on Windows and Linux,
- Retrieves hashes from local Sam, remote Sam and Syskey encrypted Sam.
You don't need to be administrator anymore to be able to crack password hashes. You just have to to boot the system on a floppy or CD and to copy the encrypted SAM. OPHCRACK can be downloaded from Sourceforge.
The WebSec06 WS-20k table sets which can crack passwords made of mixed case letters, numbers and 33 special characters including the space character can be ordered from the following page.
- ophcrack_office
This unique program cracks Word and Excel documents using rainbow tables. It cracks the default encryption technique (the one compatible with Office '97) of these documents within a few minutes. The use of ophcrack_office is very simple and its success rate is 99.6%. You can purchase it on our products page.
- hprobe
HPROBE is a packet generator with a built-in sniffer. It can generate many types of network probes to scan hosts and networks and automatically analyses the responses. Hprobe can be downloaded from Sourceforge.