Password spraying
Password spraying, translated directly as "password spraying attacks," refers to a so-called horizontal password guessing, where one or a couple of common and funny passwords are used to try logging in to multiple different user accounts. In this way, the accounts do not get locked out as individual accounts only receive one or a couple of login attempts.
Attack
The attack is quite simple and proceeds in the following stages:
- Get a list of usernames that are guessed.
- Choose a pair of common passwords (123456, password, etc).
- Try one password at a time for each different username.
Exercise
(Coming soon)
Ready to become an ethical hacker?
Start today.
As a member of Hakatemia you get unlimited access to Hakatemia modules, exercises and tools, and you get access to the Hakatemia Discord channel where you can ask for help from both instructors and other Hakatemia members.