Rule-based Attack: Substitution of single chars with strings
Nice approach overall, will definitely try this by generating some rules files for the few chars which were saved as html-entities.

I'm not really sure the rule-stacking with combined insert-rules will get me some "valid" password candidates but I'll give it a try and comment on it later, thanks a lot!

While writing this I wondered if it is possible to hand the multi-byte strings as some kind of "single char" as a custom charset to hashcat. This would allow the not yet mentioned use in mode -a 3.

Messages In This Thread
RE: Rule-based Attack: Substitution of single chars with strings - by hydra - 05-12-2017, 04:45 PM