,以及攻击者通过嗅探网络捕获上述NTLMv2响应的难度有多大--强制它进入密码。但是,假设攻击者一直在嗅探,并且在服务器将SC发送到客户端时已经捕获了SC。攻击者还应该能够从响应中看到客户端的挑战(CC & CC*)对吧..。那么,这是否意味着攻击者可以进行野蛮攻击--强制将NTV2或LMV2哈希包含在响应中,考虑到下面的信息现在就在他们身上。服务器挑战
CC &
[ 48.008575] usb 4-3: >Device not responding to set address.[ 48.212421] usb 4-3: >device not accepting address 9, error -71
[ 48.324451] usb 4-3: >Device[ 48.528340] usb 4-3: >Device not responding to set address.[ 48.732165] usb 4-3</e
0 part /当我连接我的驱动器时,dmesg | grep Western的输出如下:[ 2958.474106] usb 4-3: New USB device found, idVendor=1058, idProduct=0810
[ 2958.474114] usb 4-3: New USB device