Skip to content

Instantly share code, notes, and snippets.

@felmoltor
Created April 26, 2016 18:59
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save felmoltor/c893f6b18fda52525ff3f6d7b45adfa5 to your computer and use it in GitHub Desktop.
Save felmoltor/c893f6b18fda52525ff3f6d7b45adfa5 to your computer and use it in GitHub Desktop.
20160306 Spotify Leak Analisys
________________ __________ ____ _______
\_ _____/ _ \\______ \ ___ _/_ | \ _ \
| __)/ /_\ \| ___/ \ \/ /| | / /_\ \
| | / | \ | \ / | | \ \_/ \
\__ | \____|__ /____| \_/ |___| /\ \_____ /
\/ \/ \/ \/
Author: @felmoltor
License: GPLv3
Summary: This tool analyzes password dump. The dump can be of this three kinds (option -F):
* P: Passwords only
* U: Users only
* UFSP: User Field Separator Password (example felipe:Hola123)
Analyzing a file with user, passwords and separator ':'
Loading the whole dump file. Be patient...
Spliting the dump information...
Analyzing the password frecuency...
Analyzing the domains frecuency...
Analyzing passwords complexity...
5% - Line 5 of 86 (5 pass/sec, ETA 2016-04-26 20:57:11)
10% - Line 9 of 86 (9 pass/sec, ETA 2016-04-26 20:57:11)
15% - Line 13 of 86 (13 pass/sec, ETA 2016-04-26 20:57:11)
20% - Line 18 of 86 (18 pass/sec, ETA 2016-04-26 20:57:11)
25% - Line 22 of 86 (22 pass/sec, ETA 2016-04-26 20:57:11)
30% - Line 26 of 86 (26 pass/sec, ETA 2016-04-26 20:57:11)
40% - Line 35 of 86 (35 pass/sec, ETA 2016-04-26 20:57:11)
45% - Line 39 of 86 (39 pass/sec, ETA 2016-04-26 20:57:11)
50% - Line 43 of 86 (43 pass/sec, ETA 2016-04-26 20:57:11)
55% - Line 48 of 86 (48 pass/sec, ETA 2016-04-26 20:57:11)
60% - Line 52 of 86 (52 pass/sec, ETA 2016-04-26 20:57:11)
65% - Line 56 of 86 (56 pass/sec, ETA 2016-04-26 20:57:11)
70% - Line 61 of 86 (61 pass/sec, ETA 2016-04-26 20:57:11)
75% - Line 65 of 86 (65 pass/sec, ETA 2016-04-26 20:57:11)
80% - Line 69 of 86 (69 pass/sec, ETA 2016-04-26 20:57:11)
90% - Line 78 of 86 (78 pass/sec, ETA 2016-04-26 20:57:11)
95% - Line 82 of 86 (82 pass/sec, ETA 2016-04-26 20:57:11)
100% - Line 86 of 86 (86 pass/sec, ETA 2016-04-26 20:57:11)
=====================
= Top 10 domains =
=====================
1 - gmail.com: 56 ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
2 - hotmail.com: 11 ||||||||||||||
3 - me.com: 3 ||||
4 - yahoo.com: 3 ||||
5 - verizon.net: 2 |||
6 - sbcglobal.net: 1 |
7 - uccs.edu: 1 |
8 - msn.com: 1 |
9 - live.com.au: 1 |
10 - yahoo.no: 1 |
=======================
= Password complexity =
=======================
- Complex: 4 (4.65%) |||||
- Upper and Low and numbers: 11 (12.79%) |||||||||||||
- Upper and Low only: 0 (0.0%) |
- Low case and numbers: 50 (58.14%) ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
- Upper case and numbers: 0 (0.0%) |
- Low case only: 21 (24.42%) ||||||||||||||||||||||||
- Upper case only: 0 (0.0%) |
- Numbers only: 0 (0.0%) |
- Other: 0 (0.0%) |
====================
= Password lengths =
====================
6: 4 (4.65%) |||||
7: 14 (16.28%) ||||||||||||||||
8: 26 (30.23%) ||||||||||||||||||||||||||||||
9: 22 (25.58%) ||||||||||||||||||||||||||
10: 11 (12.79%) |||||||||||||
11: 6 (6.98%) |||||||
12: 2 (2.33%) ||
13: 1 (1.16%) |
=====================
= Passwords entropy =
=====================
6.426264754702099
====================
= Top 10 passwords =
====================
1 - ade2887: 1 ||||||||||
2 - Callofduty4: 1 ||||||||||
3 - Remember11: 1 ||||||||||
4 - cupcake: 1 ||||||||||
5 - mom2rcscjs: 1 ||||||||||
6 - R4diostar!: 1 ||||||||||
7 - j0ed1ck: 1 ||||||||||
8 - lizbo226: 1 ||||||||||
9 - bunny333: 1 ||||||||||
10 - shoe3tech: 1 ||||||||||
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment