| 특 징 | Hydra | Medusa |
| License | HYDRA | GPL-2 |
Bugs | ○ | ○ | |
Core | Parallel Method | fork() | pthread |
Service Design | Built-in | Modular | |
AFP |
|
| ○ |
CVS |
| Broken-infinite loop | ○ |
FTP | FTP | ○ | ○ |
Explicit FTPS (AUTH TLS Mode as defined in RFC 4217) |
| ○ | |
Implicit FTPS (FTP over SSL (990/tcp) |
| ○ | |
HTTP | Basuc Auth | Broken (Base64 incorrect for some passwords) | ○ |
NTLM Auth (Windows Integrated) |
| ○ | |
Digest Authentication |
| MD5, MD5-sess | |
HTTP Proxy | ○ |
| |
ICQ |
| ○ |
|
IAMP | Method AUTH-LOGIN Support | ○ | ○ |
Method AUTH-PLAIN Support |
| ○ | |
Method AUTH-NTLM Support |
| ○ | |
SSL Support | IAMPS | IAMPS, STARTTLS | |
LDAP |
| ○ |
|
Microsoft SQL | Port Auto-Detection |
| ○ |
MS-SQL | ○ | ○ | |
MySQL | Pre-4.1 Authentication | ○ | ○ |
Pre-4.1 Hash Passing |
| ○ | |
4.1 Authentication |
| ○ | |
NCP (NetWare) |
|
| ○ (ncpfs) |
NNTP |
| ○ (Original AUTHINFO) | ○ (Original AUTHINFO) |
Oracle | Database | Non-Functional | ○ (via Wrapper script) |
Listener | Non-Functional |
| |
PcAnywhere | Supported Encryption Level | None | None |
| Supported Authenication Mode(s) | Native PCA | Native PCA, ADS, NT, Windows |
PCNFS |
| ○ |
|
POP3 | Method AUTH-USER Support | ○ | ○ |
| Method AUTH-LOGIN Support |
| ○ |
| Method AUTH-NTLM Support |
| ○ |
| SSL Support | POP3S | POP3S, STARTTLS |
PostgreSQL |
| ○ | ○ |
REXEC |
| ○ | ○ |
RLOGIN | .rhost Support |
| ○ |
| Password Support | ○ | ○ |
RSH |
| ○ |
|
SAPR3 |
| ○ |
|
SIP |
| ○ |
|
SMB (Microsoft Windows/Samba) | Authentication Modes | clear-text, NTLMv1 (broken)
| clear-text, LMv1, NTLMv1, LMv2, NTLMv2 |
NetBIOS Mode | ○ | ○ | |
W2K Native Mode | Broken | ○ | |
Hash Passing | Broken | ○ | |
SMTP | Method AUTH-LOGIN Support | ○ | ○ |
Method AUTH-PLAIN Support |
| ○ | |
Method AUTH-NTLM Support |
| ○ | |
SSL Support |
| STARTTLS | |
VRFY |
| ○ |
|
SNMP |
| ○ (overwrites sysName with "HYDRA") | ○ (significantly faster design) |
SOCKS5 |
| ○ |
|
SSHv2 |
| ○ (libssh) | ○ (libssh2) |
SVN |
| ○ |
|
TeamSpeak |
| ○ |
|
Telnet | Generic Telnet | ○ | ○ |
Cisco (AAA/non-AAA) | ○ | ○ | |
Cisco enable password | ○ |
| |
AS/400 (TN5250) Support |
| ○ | |
VNC | Password-less/Password-only Support | ○ | ○ |
Anti-Brute Force Slowdown Support |
| ○ | |
Username/Password Support |
|
| |
VmWare Authentication Daemon | Non-SSL Authentication | ○ | ○ |
SSL Authentication |
| ○ | |
Web Form Module |
|
| ○ |
참고
[BackTrack5 R1] SQLdict (0) | 2013.01.31 |
---|---|
[BackTrack5 R1] ncrack (0) | 2013.01.31 |
[BackTrack5 R1] medusa (0) | 2013.01.31 |
[BackTrack5 R1] hydra (0) | 2013.01.31 |
[BackTrack5 R1] hashcat (0) | 2013.01.31 |