{"id":15615,"date":"2018-09-21T10:55:25","date_gmt":"2018-09-21T14:55:25","guid":{"rendered":"http:\/\/www.thundercloud.net\/infoave\/new\/?p=15615"},"modified":"2018-09-21T10:55:25","modified_gmt":"2018-09-21T14:55:25","slug":"what-is-password-spraying","status":"publish","type":"post","link":"https:\/\/www.thundercloud.net\/infoave\/new\/what-is-password-spraying\/","title":{"rendered":"What is Password Spraying?"},"content":{"rendered":"<h1><span style=\"font-family: helvetica, arial, sans-serif;\">What is Password Spraying?<\/span><\/h1>\n<p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\">We&#8217;ll tell you this: If we could spray your passwords and make them stronger we&#8217;d be spraying your passwords right now. We have harped and harped and prodded you about using strong passwords, because if you don&#8217;t you&#8217;re just making it easy for criminals and miscreants to gain access to your accounts &#8211; email accounts, bank accounts, credit card accounts, etc. Brute force password attacks are on the wane, but password spraying is on the rise. And if you use weak passwords, like helen1952 or 12345678, password,\u00a0 candycane52, and so on,\u00a0 you&#8217;re\u00a0 just a cruisin for a bruisin&#8217; we tells ya! If you want some easy tips that will help you build strong passwords <span style=\"text-decoration: underline;\"><a href=\"https:\/\/www.thundercloud.net\/infoave\/new\/easy-password-tips-because-passwords-are-important\/\" target=\"_blank\" rel=\"noopener\">check out our post here<\/a><\/span>.<\/span><\/p>\n<p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\">Now, you&#8217;re curious about password spraying right? OK. Here you go&#8230;<\/span><\/p>\n<p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\">The following is from INFOSEC Institute:<\/span><\/p>\n<blockquote><p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\"><em>&#8220;What is Password Spraying?<\/em><\/span><\/p>\n<p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\">Password spraying refers to the attack method that takes a large number of usernames and loops them with a single password. We can use multiple iterations using a number of different passwords, but the number of passwords attempted is usually low when compared to the number of users attempted. This method avoids password lockouts, and it is often more effective at uncovering weak passwords than targeting specific users.<\/span><\/p>\n<p><span style=\"font-family: helvetica, arial, sans-serif; font-size: 14pt;\">Note: For the success of a password attack, a good password list is essential. You can use certain tools like CEWL to generate target-specific lists in accordance, using words from websites, or come up with your own method. In the past, I have had a lot of success using MonthYear, welcome1, and organization1 and also simple passwords like qwerty12345&#8230;&#8221;<\/span><\/p><\/blockquote>\n<p><span style=\"text-decoration: underline; font-family: helvetica, arial, sans-serif; font-size: 14pt;\"><a href=\"https:\/\/resources.infosecinstitute.com\/password-spraying\/#gref\" target=\"_blank\" rel=\"noopener\" data-saferedirecturl=\"https:\/\/www.google.com\/url?q=https:\/\/resources.infosecinstitute.com\/password-spraying\/%23gref&amp;source=gmail&amp;ust=1537626846295000&amp;usg=AFQjCNGZz-q5R1_R6VH-KK7lQCNsC5xKqw\">Read more about password spraying here&#8230;<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>What is Password Spraying? We&#8217;ll tell you this: If we could spray your passwords and make them stronger we&#8217;d be spraying your passwords right now. We have harped and harped and prodded you about using strong passwords, because if you don&#8217;t you&#8217;re just making it easy for criminals and miscreants to gain access to your accounts &#8211; email\u2026 <span class=\"read-more\"><a href=\"https:\/\/www.thundercloud.net\/infoave\/new\/what-is-password-spraying\/\">Read More &raquo;<\/a><\/span><\/p>\n","protected":false},"author":1,"featured_media":13950,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1683,1433,1670,1656,10],"tags":[2672,155,14,324],"_links":{"self":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/15615"}],"collection":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/comments?post=15615"}],"version-history":[{"count":1,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/15615\/revisions"}],"predecessor-version":[{"id":15616,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/15615\/revisions\/15616"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/media\/13950"}],"wp:attachment":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/media?parent=15615"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/categories?post=15615"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/tags?post=15615"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}